|
Mathematical Foundations of Computer Security
Implementation of DNS Rebinding
T. I. Milovanov Tomsk State University, Tomsk
Abstract:
The possibility of DNS Rebindng attack realization in modern browsers is researched. This attack is directed at bypassing Same Origin Policy. The conditions for successful attack realization when the target host is located in a local network are studied. A list of the most vulnerable browsers is produced. The attack is implemented in the BeEF (Browser Exploitation Framework) being a tool for penetration testing. Some advices for protection against this attack are given.
Keywords:
HTTP, pentesting, Web application security.
Citation:
T. I. Milovanov, “Implementation of DNS Rebinding”, Prikl. Diskr. Mat. Suppl., 2015, no. 8, 92–95
Linking options:
https://www.mathnet.ru/eng/pdma229 https://www.mathnet.ru/eng/pdma/y2015/i8/p92
|
Statistics & downloads: |
Abstract page: | 173 | Full-text PDF : | 107 | References: | 56 |
|