embedded devices

XCS cross channel scripting and its impact on web applications

By , ,   @CCS 2009
0 reaction(s) | 1102 downloads
We reveal a series of attacks against embedded devices based on a new type of vulnerability that we call cross channel scripting (XCS). XCS is a sophisticated form of cross site scripting (XSS) in which the attack injection and execution are carried out via different protocols.
Downloads
paper
slides
You might also like reading

Embedded devices 2010

The emergence of cross channel scripting

Clickjacking 2010

Busting Frame Busting a Study of Clickjacking Vulnerabilities on Popular Sites

Study 2010

State of the Art Automated Black-Box Web Application Vulnerability Testing

Embedded devices 2011

Towards Secure Embedded Web Interfaces

Embedded devices 2009

Embedded Management Interfaces Emerging Massive Insecurity

Comments
About me
Researcher at Google, specializing in Internet security and privacy.
Latest blog posts
Latest social News
What Your Facebook Profile Photo Says About You - http://t.co/THHqZQxFem#fb#twitter#psych#smo#seo#privacy
Emotion color guide. Awesome ! What is your color? :)#design#web#art#ux http://t.co/bndVZysO5t
When a porn site masquerades as the Apple App Store - http://t.co/x3r0UKGUlX#ios#apple#security#seo#mobile
'Financial Times' Website and Twitter Accounts Hacked - http://t.co/asOWR3Hdi5#security#privacy #syrianelectronicarmy#wsj
Twitter ‘Hate Map’ shows where racist, homophobic, and offensive tweets originate - http://t.co/4cJUSmMZEO#freedom#twitter#web
Share me!