Critical Thinking - Bug Bounty Podcast cover image

Episode 47: CSP Research, Iframe Hopping, and Client-side Shenanigans

Critical Thinking - Bug Bounty Podcast

00:00

Exploiting the Same-Origin Policy and Bypassing CSP

The chapter explores techniques like frame origin manipulation and JSONP to exploit the same-origin policy in browsers and bypass Content Security Policy. It discusses the challenges of exploiting vulnerabilities due to browser security mechanisms and the emergence of new types of attacks. The chapter also presents research on bypassing CSP using iframe and proxying, allowing for data exfiltration and script execution.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app