Тёмный
No video :(

XMPP Stanza Smuggling or How I Hacked Zoom 

Black Hat
Подписаться 228 тыс.
Просмотров 2,4 тыс.
50% 1

XMPP is a popular instant messaging protocol based on XML that is used in messengers, online games and other applications.
This talk will introduce a new way of attacking XMPP client software: XMPP stanza smuggling. More specifically, it will show how seemingly subtle quirks in XML parsing can be exploited to "smuggle" attacker-controlled XMPP control messages to the victim client and how the design of the XMPP protocol makes it especially susceptible to such issues. It will be demonstrated how such issues led to 0-click remote code execution in the Zoom client.
Presented by Ivan Fratric
Full Abstract and Presentation Materials: www.blackhat.c...

Опубликовано:

 

16 ноя 2022

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии    
Далее
XMPP Protocol Introduction and Overview
25:35
Просмотров 13 тыс.
Ok, but what is XMPP?
24:57
Просмотров 8 тыс.
Diving deep into Briar at XMPP Meetup Berlin
1:04:49
Просмотров 10 тыс.
XMPP Chat with Profanity (Full Course)
1:03:01
Просмотров 7 тыс.