Web Hack List

Collected research

Web Cache Deception Escalates!

Web cache deception tricks a caching proxy into storing pages that hold another user's secrets by requesting them with a fake static-file suffix. Replacing injected markers with page-identicality and cache-header heuristics lets any site be tested; 1188 of the Alexa Top 10K were vulnerable, leaking CSRF tokens and CSP nonces from pages behind no login at all.

Record

Researcher
Seyed Ali Mirheidari, Matteo Golinelli, Kaan Onarlioglu, Engin Kirda and Bruno Crispo
Published by
usenix.org
Format
Whitepaper
Topic
HTTP

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Seyed Ali Mirheidari, Matteo Golinelli, Kaan Onarlioglu, Engin Kirda and Bruno Crispo, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .