Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Exploiting CORS misconfigurations for Bitcoins and bounties

Summary

James Kettle shows how to examine and exploit misconfigured CORS from a hacker's perspective, covering origin reflection, wildcards and credential pitfalls. Condensed from his AppSec USA talk.
Published
Collected

original ↗

Related coverage

back