0

Hijacking Web 2.0 Sites with SSLstrip and SlowLoris — Sam Bowne and RSnake at Defcon 17

Posted by Ken S. on March 19, 2011 in General Tech, Hacking |

Many Websites mix secure and insecure content on the same page, like Facebook. This makes it possible to steal all the data entered on such a page easily, using Moxie Marlinspike’s new SSLstrip tool.

SlowLoris is a new denial of service attack developed by RSnake.

Both exploits are explained and demonstrated.

Slides, handouts, and detailed instructions for these attacks are available at:
http://samsclass.info/defcon.html

Leave a Reply

Your email address will not be published. Required fields are marked *

Copyright © 2010-2024 I am G33K… All rights reserved.
This site is using the Desk Mess Mirrored theme, v2.5, from BuyNowShop.com.