Главная
Study mode:
on
1
Intro
2
About me
3
History
4
Applications
5
iTunes Store
6
The Chase
7
Not encrypted
8
No SSL
9
Variance
10
Crosssite scripting
11
Add Webs
12
Web Server
13
Vendors
14
Testing
15
File Manager
16
iOS 7 Security
17
DNS Protocol
18
World Wide Web
19
Conclusion
20
Security
Description:
Explore the security vulnerabilities of iOS web server apps in this 31-minute conference talk by Bruno Oliveira from OWASP Foundation. Dive into the risks associated with popular file-sharing applications available on the iTunes Store that implement web servers on iOS devices. Learn about the lack of encryption, authentication issues, and potential exploits ranging from cross-site scripting to remote code execution. Discover how these vulnerabilities can be magnified through mDNS queries, making devices easy targets on wireless networks. Gain insights into the differences between jailbroken and non-jailbroken devices, and witness live demonstrations of unpatched vulnerabilities. Understand the implications for iOS security and file system compromise through practical attack scenarios presented by this experienced security consultant.

Hacking Web Server Apps for iOS - Security Risks and Vulnerabilities

OWASP Foundation
Add to list
0:00 / 0:00