Collected research
Identifying Cross-origin Resource Status Using Application Cache
HTML5 Application Cache can be made to reveal the status of arbitrary cross-origin URLs, whether they exist, redirect or error, with no client-side script and for many URLs at once. That leak tells an attacker page whether the visitor is logged in to a given site and lets it probe web servers on the victim's local network.
Record
- Researcher
- Sangho Lee, Hyungsub Kim and Jong Kim
- Published by
- NDSS Symposium
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Sangho Lee, Hyungsub Kim and Jong Kim, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .