Web Hack List

Collected research

PMForce: Systematically Analyzing PostMessage Handlers at Scale

PMForce runs in the browser and pairs selective force execution with lightweight dynamic taint tracking to explore postMessage handlers, then solves the collected path constraints with Z3 and exploit templates into a message that really reaches a code-execution or state-changing sink. Across the top 100,000 sites it found 252 vulnerable handlers, 111 auto-exploitable.

Record

Researcher
Steffens, Marius
Published by
publications.cispa.saarland
Topic
Other

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Steffens, Marius, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .