Critical Thinking - Bug Bounty Podcast cover image

Episode 95: Attacking Chrome Extensions with MatanBer - Big Impact on the Client-Side

Critical Thinking - Bug Bounty Podcast

00:00

Exploring Shadow DOM and Security Risks in Browser Extensions

This chapter examines the intricacies of closed shadow DOM and its role in isolating web elements, comparing it to iframes for better understanding of security layers. It highlights various vulnerabilities in Chrome extensions, particularly focusing on clickjacking risks and potential malicious interactions associated with shadow DOM. By analyzing noteworthy bugs and the architecture of Chrome extensions, the chapter underscores the importance of threat models in fortifying client-side security.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app