Web Hack List

Collected research

Identifying Cross-origin Resource Status Using Application Cache

HTML5 Application Cache can be made to reveal the status of arbitrary cross-origin URLs, whether they exist, redirect or error, with no client-side script and for many URLs at once. That leak tells an attacker page whether the visitor is logged in to a given site and lets it probe web servers on the victim's local network.

Record

Researcher
Sangho Lee, Hyungsub Kim and Jong Kim
Published by
NDSS Symposium
Topic
Other

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Sangho Lee, Hyungsub Kim and Jong Kim, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .