Top 10 winner
Rosetta Flash
Abusing JSONP with Rosetta Flash
Rosetta Flash converts any SWF into one built only from alphanumeric characters, using ad-hoc Huffman encoders and Adler-32 checksum bruteforcing, so the file can be passed as a JSONP callback and reflected by the vulnerable site. The victim's browser then runs that Flash from the target origin, making cookie-carrying requests and exfiltrating the responses to the attacker.
Record
- Document
- Abusing JSONP with Rosetta Flash
- Researcher
- Michele Spagnuolo
- Published by
- miki.it
- Topic
- Other
In the archive
Related sources
- Rosetta Flash Whitepaper
- Rosetta Flash Whitepaper
- Rosetta Flash
- ASCII ZIP
Tags
This page is the archive's own catalogue record. The research is the work of Michele Spagnuolo, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .