Zum Hauptinhalt springen

Showing 1–1 of 1 results for author: Dresen, C

Searching in archive cs. Search in all archives.
.
  1. arXiv:2004.00939  [pdf, other

    cs.CR

    CORSICA: Cross-Origin Web Service Identification

    Authors: Christian Dresen, Fabian Ising, Damian Poddebniak, Tobias Kappert, Thorsten Holz, Sebastian Schinzel

    Abstract: Vulnerabilities in private networks are difficult to detect for attackers outside of the network. While there are known methods for port scanning internal hosts that work by luring unwitting internal users to an external web page that hosts malicious JavaScript code, no such method for detailed and precise service identification is known. The reason is that the Same Origin Policy (SOP) prevents ac… ▽ More

    Submitted 2 April, 2020; originally announced April 2020.

    Comments: Accepted to ASIACCS2020