SlideShare ist ein Scribd-Unternehmen logo
1 von 61
Downloaden Sie, um offline zu lesen
HACK IN THE BOX
  DUBAI 2008
pdp
information security researcher, hacker, founder of GNUCITIZEN
Cutting-edge Think Tank
ABOUT GNUCITIZEN
 Think tank
     Research
     Training
 Ethical Hacker Outfit
     Responsible disclosure
     We have nothing to hide
 Tiger Team
     The only active Tiger Team in UK.
     Proud to have some of the best pros in our team.
OTHERS
 Hakiri
     Hacker Lifestyle
 Spin Hunters
     Social Hacking Research House
CLIENT-SIDE SECURITY
Overview of various Client-Side Hacking Tricks and Techniques
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008
Client Side Security - Hack in The Box Dubai 2008

Weitere ähnliche Inhalte

Ähnlich wie Client Side Security - Hack in The Box Dubai 2008

Design thinking in startups slideshare version
Design thinking in startups slideshare versionDesign thinking in startups slideshare version
Design thinking in startups slideshare versionesegalico
 
Entrepreneur! london 2012 slideshare
Entrepreneur! london 2012 slideshareEntrepreneur! london 2012 slideshare
Entrepreneur! london 2012 slideshareErik Scarcia
 
The mardarch showcase 2013 2
The mardarch showcase 2013 2The mardarch showcase 2013 2
The mardarch showcase 2013 2ronakbk
 
UX Australia 2015 Redux
UX Australia 2015 ReduxUX Australia 2015 Redux
UX Australia 2015 ReduxAnthony Clark
 
The Hardest Thing To Get Right (GeekWire Startup Day 2015)
The Hardest Thing To Get Right (GeekWire Startup Day 2015)The Hardest Thing To Get Right (GeekWire Startup Day 2015)
The Hardest Thing To Get Right (GeekWire Startup Day 2015)Jordan Ritter
 
Design thinking for geeks
Design thinking for geeksDesign thinking for geeks
Design thinking for geeksNina Khosla
 
Understanding Content: The Stuff We Design For
Understanding Content: The Stuff We Design ForUnderstanding Content: The Stuff We Design For
Understanding Content: The Stuff We Design ForKaren McGrane
 
Prototyping approach and platforms nov. 2020
Prototyping approach and platforms nov. 2020Prototyping approach and platforms nov. 2020
Prototyping approach and platforms nov. 2020Filippo Scorza
 
Innovation Diagnostic @daniel_egger
Innovation Diagnostic @daniel_eggerInnovation Diagnostic @daniel_egger
Innovation Diagnostic @daniel_eggerDaniel Egger
 
Innovation Myth Buster at Target's Innovation Network Nov 2009
Innovation Myth Buster at Target's Innovation Network Nov 2009Innovation Myth Buster at Target's Innovation Network Nov 2009
Innovation Myth Buster at Target's Innovation Network Nov 2009Mindful Innovation, Inc.
 
Innovation Myth Buster at Target Innovaiton Network Nov 2009
Innovation Myth Buster at Target Innovaiton Network Nov 2009Innovation Myth Buster at Target Innovaiton Network Nov 2009
Innovation Myth Buster at Target Innovaiton Network Nov 2009guestb97369f
 
Week 3: Handout dean designed to scale - a framework - 040117
Week 3: Handout dean designed to scale - a framework - 040117Week 3: Handout dean designed to scale - a framework - 040117
Week 3: Handout dean designed to scale - a framework - 040117Talou Diallo
 
Week 04_Designed to scale handout
Week 04_Designed to scale handoutWeek 04_Designed to scale handout
Week 04_Designed to scale handoutTokunbo Anifalaje
 
ALF Innovation and Testing Adam Knight
ALF Innovation and Testing Adam KnightALF Innovation and Testing Adam Knight
ALF Innovation and Testing Adam KnightAdam Knight
 
Upgrade Your Offer! How to Sell Business Value
Upgrade Your Offer! How to Sell Business ValueUpgrade Your Offer! How to Sell Business Value
Upgrade Your Offer! How to Sell Business ValueJakob Persson
 
Using Design Thinking in Innovation and How to Apply it to Your Career
Using Design Thinking in Innovation and How to Apply it to Your CareerUsing Design Thinking in Innovation and How to Apply it to Your Career
Using Design Thinking in Innovation and How to Apply it to Your CareerCraig Damlo
 

Ähnlich wie Client Side Security - Hack in The Box Dubai 2008 (20)

Design thinking in startups slideshare version
Design thinking in startups slideshare versionDesign thinking in startups slideshare version
Design thinking in startups slideshare version
 
Entrepreneur! london 2012 slideshare
Entrepreneur! london 2012 slideshareEntrepreneur! london 2012 slideshare
Entrepreneur! london 2012 slideshare
 
The mardarch showcase 2013 2
The mardarch showcase 2013 2The mardarch showcase 2013 2
The mardarch showcase 2013 2
 
UX Australia 2015 Redux
UX Australia 2015 ReduxUX Australia 2015 Redux
UX Australia 2015 Redux
 
The Hardest Thing To Get Right (GeekWire Startup Day 2015)
The Hardest Thing To Get Right (GeekWire Startup Day 2015)The Hardest Thing To Get Right (GeekWire Startup Day 2015)
The Hardest Thing To Get Right (GeekWire Startup Day 2015)
 
Hcpra 2013 think like a publicist, act like a journalist
Hcpra 2013   think like a publicist, act like a journalistHcpra 2013   think like a publicist, act like a journalist
Hcpra 2013 think like a publicist, act like a journalist
 
Design thinking for geeks
Design thinking for geeksDesign thinking for geeks
Design thinking for geeks
 
Understanding Content: The Stuff We Design For
Understanding Content: The Stuff We Design ForUnderstanding Content: The Stuff We Design For
Understanding Content: The Stuff We Design For
 
Creativity & innovation
Creativity & innovationCreativity & innovation
Creativity & innovation
 
HR Futures Conference Feb09
HR Futures Conference Feb09HR Futures Conference Feb09
HR Futures Conference Feb09
 
Prototyping approach and platforms nov. 2020
Prototyping approach and platforms nov. 2020Prototyping approach and platforms nov. 2020
Prototyping approach and platforms nov. 2020
 
Innovation Diagnostic @daniel_egger
Innovation Diagnostic @daniel_eggerInnovation Diagnostic @daniel_egger
Innovation Diagnostic @daniel_egger
 
The 7 Secrets of Socially Successful Businesses
The 7 Secrets of Socially Successful BusinessesThe 7 Secrets of Socially Successful Businesses
The 7 Secrets of Socially Successful Businesses
 
Innovation Myth Buster at Target's Innovation Network Nov 2009
Innovation Myth Buster at Target's Innovation Network Nov 2009Innovation Myth Buster at Target's Innovation Network Nov 2009
Innovation Myth Buster at Target's Innovation Network Nov 2009
 
Innovation Myth Buster at Target Innovaiton Network Nov 2009
Innovation Myth Buster at Target Innovaiton Network Nov 2009Innovation Myth Buster at Target Innovaiton Network Nov 2009
Innovation Myth Buster at Target Innovaiton Network Nov 2009
 
Week 3: Handout dean designed to scale - a framework - 040117
Week 3: Handout dean designed to scale - a framework - 040117Week 3: Handout dean designed to scale - a framework - 040117
Week 3: Handout dean designed to scale - a framework - 040117
 
Week 04_Designed to scale handout
Week 04_Designed to scale handoutWeek 04_Designed to scale handout
Week 04_Designed to scale handout
 
ALF Innovation and Testing Adam Knight
ALF Innovation and Testing Adam KnightALF Innovation and Testing Adam Knight
ALF Innovation and Testing Adam Knight
 
Upgrade Your Offer! How to Sell Business Value
Upgrade Your Offer! How to Sell Business ValueUpgrade Your Offer! How to Sell Business Value
Upgrade Your Offer! How to Sell Business Value
 
Using Design Thinking in Innovation and How to Apply it to Your Career
Using Design Thinking in Innovation and How to Apply it to Your CareerUsing Design Thinking in Innovation and How to Apply it to Your Career
Using Design Thinking in Innovation and How to Apply it to Your Career
 

Kürzlich hochgeladen

Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfPrecisely
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESmohitsingh558521
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningLars Bell
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxLoriGlavin3
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 

Kürzlich hochgeladen (20)

Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICESSALESFORCE EDUCATION CLOUD | FEXLE SERVICES
SALESFORCE EDUCATION CLOUD | FEXLE SERVICES
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine Tuning
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 

Client Side Security - Hack in The Box Dubai 2008