Web Hack List

Other nomination

Exposing Intranets with reliable Browser-based Port scanning

A browser-based port scanner that is reliable rather than timing-based: a hidden iframe loads a target host and port, then the same URL is clicked again with a hash appended and onload events are counted. A refused port makes Chrome rewrite the URL to chrome-error, giving a second onload, so any web page can enumerate intranet services; Firefox and Edge variants are given.

Record

Researcher
Gareth Heyes
Published by
PortSwigger Research
Date

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Gareth Heyes, first published at the original source. Preserved copies are kept so the citation survives its host.