Other nomination
CTA: The weaknesses in client side xss filtering targeting Chrome's XSS Auditor
Capture of the full Black Hat USA 2014 Briefings programme; the cited talk within it, Call To Arms, reports 17 flaws in Chrome's XSS Auditor that let an attacker rewrite an injection so the client-side filter passes it through. The authors automate bypass generation and measure it against thousands of real DOM-based XSS bugs.
Record
- Published by
- blackhat.com
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of blackhat.com, first published at the original source. Preserved copies are kept so the citation survives its host.