* Cantinho Satkeys

Refresh History
  • yaro-82: 1994
    07 de Setembro de 2025, 16:49
  • FELISCUNHA: Votos de um santo domingo para todo o auditório  43e5r6
    07 de Setembro de 2025, 10:52
  • j.s.: tenham um excelente fim de semana  49E09B4F
    06 de Setembro de 2025, 17:07
  • j.s.: dgtgtr a todos  4tj97u<z
    06 de Setembro de 2025, 17:07
  • FELISCUNHA: Boa tarde pessoal  49E09B4F bom fim de semana  htg6454y
    05 de Setembro de 2025, 14:53
  • JPratas: try65hytr A Todos  4tj97u<z classic k7y8j0
    05 de Setembro de 2025, 03:10
  • cereal killa: dgtgtr pessoal  4tj97u<z
    03 de Setembro de 2025, 15:26
  • FELISCUNHA: ghyt74  pessoal   49E09B4F
    01 de Setembro de 2025, 11:36
  • j.s.: de regresso a casa  535reqef34
    31 de Agosto de 2025, 20:21
  • j.s.: try65hytr a todos  4tj97u<z
    31 de Agosto de 2025, 20:21
  • FELISCUNHA: ghyt74   49E09B4e bom fim de semana  4tj97u<z
    30 de Agosto de 2025, 11:48
  • henrike: try65hytr     k7y8j0
    29 de Agosto de 2025, 21:52
  • JPratas: try65hytr Pessoal 4tj97u<z 2dgh8i classic k7y8j0
    29 de Agosto de 2025, 03:57
  • cereal killa: dgtgtr pessoal  2dgh8i
    27 de Agosto de 2025, 12:28
  • FELISCUNHA: Votos de um santo domingo para todo o auditório  4tj97u<z
    24 de Agosto de 2025, 11:26
  • janstu10: reed
    24 de Agosto de 2025, 10:52
  • FELISCUNHA: ghyt74   49E09B4F  e bom fim de semana  4tj97u<z
    23 de Agosto de 2025, 12:03
  • joca34: cd Vem dançar Kuduro Summer 2025
    22 de Agosto de 2025, 23:07
  • joca34: cd Kizomba Mix 2025
    22 de Agosto de 2025, 23:06
  • JPratas: try65hytr A Todos e Boas Férias 4tj97u<z htg6454y k7y8j0
    22 de Agosto de 2025, 04:22

Autor Tópico: Bypassing Content Security Policy in Modern Web Applications  (Lida 104 vezes)

0 Membros e 1 Visitante estão a ver este tópico.

Offline mitsumi

  • Sub-Administrador
  • ****
  • Mensagens: 124987
  • Karma: +0/-0


Bypassing Content Security Policy in Modern Web Applications
Published 5/2023
Created by Dawid Czagan
MP4 | Video: h264, 1280x720 | Audio: AAC, 44.1 KHz, 2 Ch
Genre: eLearning | Language: English | Duration: 5 Lectures ( 1h 4m ) | Size: 346 MB
Learn How Hackers Can Bypass the Most Powerful Defensive Technology in Modern Web Applications

What you'll learn
Discover how hackers can bypass a CSP via ajax(dot)googleapis(dot)com
Explore how hackers can bypass a CSP via Flash file
Learn how hackers can bypass a CSP via polyglot file
Discover how hackers cab bypassing a CSP via AngularJS
Learn step by step how all these attacks work in practice (DEMOS)
Check if your Content Security Policy is vulnerable to these attacks
Become a successful penetration tester / ethical hacker
Learn from one of the top hackers at HackerOne
Requirements
Basic hacking skills
Basic understanding of XSS attacks
Description
Content Security Policy (CSP) is the most powerful defensive technology in modern web applications. For hackers, this is an obstacle that blocks their attacks. That's why hackers are very interested in bypassing Content Security Policy and obviously you don't want that to happen.In this course, you'll learn how your Content Security Policy can be bypassed by hackers. What's more, you'll learn how to check if your Content Security Policy is vulnerable to these attacks. First, I'll show you how hackers can bypass a CSP via ajax(dot)googleapis(dot)com. Next, I'll present how hackers can bypass a CSP via Flash file. After that, I'll explain to you what a polyglot file is and how it can be used to bypass a CSP. Finally, I'll present how hackers can bypass a CSP via AngularJS.-----------------------------------------------*** For every single attack presented in this course there is a DEMO ***  so that you can see step by step how these attacks work in practice. I hope this sounds good to you and I can't wait to see you in the class.-----------------------------------------------Case #1:  Bypassing CSP via ajax(dot)googleapis(dot)comCase #2: Bypassing CSP via Flash FileCase #3: Bypassing CSP via Polyglot FileCase #4: Bypassing CSP via AngularJS
Who this course is for
Penetration testers, ethical hackers, bug hunters, security engineers / consultants

Download link

rapidgator.net:
Citar
https://rapidgator.net/file/d4f8bd697f3840492317a09a7ddc157f/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar.html

uploadgig.com:
Citar
https://uploadgig.com/file/download/7daF2e673a594b2C/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar

nitroflare.com:
Citar
https://nitroflare.com/view/BD4F01CCA1AED0C/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar

1dl.net:
Citar
https://1dl.net/ggj7lurx7wim/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar