Posted by: notictech | August 20, 2008

HTTPS: Surf jacking makes it vulnerable

Cookies and redirection seem to be this year’s “attack vector du jour.” At DefCon, Mike Perry gave a rather disconcerting talk about surf jacking and how it can be used to capture SSL session cookies. Michael Kassner would like to explain how surf jacking compromises HTTPS security.

More info: techrepublic


Leave a response

Your response:

Categories