Collected research
Web Cache Deception Escalates!
Web cache deception tricks a caching proxy into storing pages that hold another user's secrets by requesting them with a fake static-file suffix. Replacing injected markers with page-identicality and cache-header heuristics lets any site be tested; 1188 of the Alexa Top 10K were vulnerable, leaking CSRF tokens and CSP nonces from pages behind no login at all.
Record
- Researcher
- Seyed Ali Mirheidari, Matteo Golinelli, Kaan Onarlioglu, Engin Kirda and Bruno Crispo
- Published by
- usenix.org
- Format
- Whitepaper
- Topic
- HTTP
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Seyed Ali Mirheidari, Matteo Golinelli, Kaan Onarlioglu, Engin Kirda and Bruno Crispo, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .