Главная
Study mode:
on
1
Intro
2
About me
3
Hackability
4
Missing browser devtools
5
New tool
6
Introducing Inspector
7
Inspecting HTML
8
Filter objects
9
Detecting JS windows
10
Detecting Function/Object
11
Security bugs
12
Security tests
13
Detecting Java bridges
14
Exploiting Java bridges
15
Advanced Inspection
16
Use cases
17
Shortcuts and commands
18
Conclusion
Description:
Explore advanced techniques for discovering and exploiting unknown browsers and custom JavaScript objects in this 39-minute conference talk from OWASP AppSec EU 2018. Delve into the world of embedded browsers found in popular applications, headless crawlers, IoT devices, and game consoles. Learn how to overcome the challenges of investigating these systems without traditional developer tools. Discover the Hackability inspector, a powerful offensive toolkit for security researchers, designed to inspect and exploit hidden entities. Gain insights into detecting JavaScript windows, Function/Object patterns, and Java bridges. Master advanced inspection techniques, security testing methods, and practical use cases for this innovative tool. Equip yourself with essential shortcuts and commands to enhance your offensive security capabilities in environments where conventional dev tools are unavailable.

Exploiting Unknown Browsers and Objects

OWASP Foundation
Add to list
0:00 / 0:00