Collected research
Cross-Site Challenge-Response Attacks
Brute-forces password and secret-code challenge-response checks across origins by making visitors' browsers submit guesses and reading success from side channels that survive the same-origin policy. One variant turns any page visitor into a guessing bot, another targets the visitor's own account; a survey finds the weakness in popular sites, CMSs, routers and IoT devices.
Record
- Researcher
- Nethanel Gelernter and Itamar Peretz
- Published by
- madweb.work
- Format
- Whitepaper
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Nethanel Gelernter and Itamar Peretz, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .