Collected research
Advanced Web Attack Techniques using GMail
A fixed GMail flaw: a predictable URL returned the victim's contact list as an unreferenced JavaScript array constant, loadable cross-domain with a script tag and the session cookie. Overriding the built-in Array constructor with a setter-based one captures the constant as it is parsed, with no XSS. Advice: never serve sensitive data as bare JavaScript.
Record
- Researcher
- Jeremiah Grossman
- Published by
- blog.jeremiahgrossman.com
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Jeremiah Grossman, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .