Critical Thinking - Bug Bounty Podcast cover image

Episode 47: CSP Research, Iframe Hopping, and Client-side Shenanigans

Critical Thinking - Bug Bounty Podcast

CHAPTER

Exploiting the Same-Origin Policy and Bypassing CSP

The chapter explores techniques like frame origin manipulation and JSONP to exploit the same-origin policy in browsers and bypass Content Security Policy. It discusses the challenges of exploiting vulnerabilities due to browser security mechanisms and the emergence of new types of attacks. The chapter also presents research on bypassing CSP using iframe and proxying, allowing for data exfiltration and script execution.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner