Top 10 winner
Cure53 Browser Security Whitepaper
Cure53 Browser Security White Paper
A 330-page comparative audit of MSIE11, Edge and Chrome covering memory-safety mitigations, CSP and other security headers, DOM security, extension and plugin models, and UI trust indicators. It documents working attacks such as turning MSIE's XSS Filter into an XSS source, downgrading a framed site's document mode from an attacker page, DOM clobbering, and Cyrillic look-alike domains.
Record
- Document
- Cure53 Browser Security White Paper
- Researcher
- Mario Heiderich, Alex Inführ, Fabian Fäßler, Nikolai Krein, Masato Kinugawa, Tsang-Chi "Filedescriptor" Hong, Dario Weißer and Paula Pustułka
- Published by
- Cure53
- Date
- Format
- Whitepaper
- Topic
- Browser
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Mario Heiderich, Alex Inführ, Fabian Fäßler, Nikolai Krein, Masato Kinugawa, Tsang-Chi "Filedescriptor" Hong, Dario Weißer and Paula Pustułka, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .