Web Hack List

Collected research

Active Man in the Middle Attacks

IBM Rational Application Security Insider: Active Man in the Middle Attacks

An announcement of Adi Sharabani's OWASP AU keynote on active man-in-the-middle attacks against web applications. An attacker on a public network injects into a response from an uninteresting HTTP site and uses it to steal private data for any site of his choosing, with the compromise persisting after the victim leaves the attacker's network. Slides and whitepaper are linked.

Record

Document
IBM Rational Application Security Insider: Active Man in the Middle Attacks
Researcher
Ory Segal
Published by
blog.watchfire.com
Topic
Other

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Ory Segal, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .