* Cantinho Satkeys

Refresh History
  • cereal killa:
    19 de Abril de 2025, 21:17
  • j.s.: tenham uma Santa e Feliz Páscoa  49E09B4F 49E09B4F 49E09B4F
    19 de Abril de 2025, 18:19
  • j.s.:
    19 de Abril de 2025, 18:19
  • j.s.: dgtgtr a todos  4tj97u<z 4tj97u<z
    19 de Abril de 2025, 18:15
  • FELISCUNHA: Uma santa sexta feira para todo o auditório  4tj97u<z
    18 de Abril de 2025, 11:12
  • JPratas: try65hytr Pessoal  4tj97u<z classic k7y8j0
    18 de Abril de 2025, 03:28
  • cereal killa: try65hytr malta  classic 2dgh8i
    14 de Abril de 2025, 23:14
  • FELISCUNHA: Votos de um santo domingo para todo o auditório  101041
    13 de Abril de 2025, 11:45
  • j.s.: e um bom domingo de Ramos  43e5r6 43e5r6
    11 de Abril de 2025, 21:02
  • j.s.: tenham um excelente fim de semana  49E09B4F
    11 de Abril de 2025, 21:01
  • j.s.: try65hytr a todos  4tj97u<z
    11 de Abril de 2025, 21:00
  • JPratas: try65hytr  y5r6t Pessoal  classic k7y8j0
    11 de Abril de 2025, 04:15
  • JPratas: dgtgtr A Todos  4tj97u<z classic k7y8j0
    10 de Abril de 2025, 18:29
  • FELISCUNHA: ghyt74  pessoal   49E09B4F
    09 de Abril de 2025, 11:59
  • cereal killa: try65hytr pessoal  2dgh8i
    08 de Abril de 2025, 23:21
  • FELISCUNHA: Votos de um santo domingo para todo o auditório  43e5r6
    06 de Abril de 2025, 11:13
  • cccdh: Ola para todos!
    04 de Abril de 2025, 23:41
  • j.s.: tenham um excelente fim de semana  49E09B4F
    04 de Abril de 2025, 21:10
  • j.s.: try65hytr a todos  4tj97u<z
    04 de Abril de 2025, 21:10
  • FELISCUNHA: dgtgtr pessoal  49E09B4F  bom fim de semana  4tj97u<z
    04 de Abril de 2025, 14:29

Autor Tópico: Bypassing Content Security Policy in Modern Web Applications  (Lida 81 vezes)

0 Membros e 1 Visitante estão a ver este tópico.

Online mitsumi

  • Moderador Global
  • ***
  • Mensagens: 119035
  • Karma: +0/-0


Bypassing Content Security Policy in Modern Web Applications
Published 5/2023
Created by Dawid Czagan
MP4 | Video: h264, 1280x720 | Audio: AAC, 44.1 KHz, 2 Ch
Genre: eLearning | Language: English | Duration: 5 Lectures ( 1h 4m ) | Size: 346 MB
Learn How Hackers Can Bypass the Most Powerful Defensive Technology in Modern Web Applications

What you'll learn
Discover how hackers can bypass a CSP via ajax(dot)googleapis(dot)com
Explore how hackers can bypass a CSP via Flash file
Learn how hackers can bypass a CSP via polyglot file
Discover how hackers cab bypassing a CSP via AngularJS
Learn step by step how all these attacks work in practice (DEMOS)
Check if your Content Security Policy is vulnerable to these attacks
Become a successful penetration tester / ethical hacker
Learn from one of the top hackers at HackerOne
Requirements
Basic hacking skills
Basic understanding of XSS attacks
Description
Content Security Policy (CSP) is the most powerful defensive technology in modern web applications. For hackers, this is an obstacle that blocks their attacks. That's why hackers are very interested in bypassing Content Security Policy and obviously you don't want that to happen.In this course, you'll learn how your Content Security Policy can be bypassed by hackers. What's more, you'll learn how to check if your Content Security Policy is vulnerable to these attacks. First, I'll show you how hackers can bypass a CSP via ajax(dot)googleapis(dot)com. Next, I'll present how hackers can bypass a CSP via Flash file. After that, I'll explain to you what a polyglot file is and how it can be used to bypass a CSP. Finally, I'll present how hackers can bypass a CSP via AngularJS.-----------------------------------------------*** For every single attack presented in this course there is a DEMO ***  so that you can see step by step how these attacks work in practice. I hope this sounds good to you and I can't wait to see you in the class.-----------------------------------------------Case #1:  Bypassing CSP via ajax(dot)googleapis(dot)comCase #2: Bypassing CSP via Flash FileCase #3: Bypassing CSP via Polyglot FileCase #4: Bypassing CSP via AngularJS
Who this course is for
Penetration testers, ethical hackers, bug hunters, security engineers / consultants

Download link

rapidgator.net:
Citar
https://rapidgator.net/file/d4f8bd697f3840492317a09a7ddc157f/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar.html

uploadgig.com:
Citar
https://uploadgig.com/file/download/7daF2e673a594b2C/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar

nitroflare.com:
Citar
https://nitroflare.com/view/BD4F01CCA1AED0C/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar

1dl.net:
Citar
https://1dl.net/ggj7lurx7wim/gkygo.Bypassing.Content.Security.Policy.in.Modern.Web.Applications.rar