Browser refresh attack

Browser refresh attack is attack which enables an adversary to obtain application credentials by going by to previous page and re-submitting the expired-document.

How to perform:

  • Log into to https://<some-site>/login
  • Once logged in, try for change password and logout.
  • Press "Back" on the browser window. Now you'll see the "Document Expired" page.

  • Now run an interceptor (burp/tamper data)
  • Click "Try again" on the web page
  • Click "Re-send data"
  • Watch the intercepted request.

You'll observe that login passwords being resubmitted by browser get captured.


Comments

Popular posts from this blog

Location.Hash exploit || JQuery 1.11.3/1.7.2/1.6.1 Cross Site Scripting

JQuery UI 1.11.4 Cross Site Scripting

Yahoo Rolls Out Security Scanning Platform Gryffin: Here's What You Can Do With It