Web Hack List

Collected research

Advanced Web Attack Techniques using GMail

A fixed GMail flaw: a predictable URL returned the victim's contact list as an unreferenced JavaScript array constant, loadable cross-domain with a script tag and the session cookie. Overriding the built-in Array constructor with a setter-based one captures the constant as it is parsed, with no XSS. Advice: never serve sensitive data as bare JavaScript.

Record

Researcher
Jeremiah Grossman
Published by
blog.jeremiahgrossman.com
Topic
Other

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Jeremiah Grossman, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .