RB2: OWASP Day podcast: Exploiting Firefox extensions

August 21, 2009 --
In this special interview you'll hear our New Zealand correspondent Paul Craig interviewing Security-Assessment.com's Roberto Suggi Liverani and Nick Freeman discuss their research into exploiting Firefox extensions.
These guys were doing a review of a large web application and evaluation of a related firefox extension was in scope.
Skype extensions, search toolbars -- all those extensions that people routinely install into their browsers, well, it turns out a lot of them are buggy as hell and these two have figured out how to exploit these little suckers, and at best guess, there's around 30 million boxes out there vulnerable to the extension bugs they've identified.
User login
Recent podcasts
-
Are there really 7.68 billion reasons for Intel to acquire McAfee?
-
Mobile device encryption no match for low-level attacks...
-
John Conner eat your heart out...
-
H D Moore's VxWorks research is out of this world...
-
APTs result of evil genius from marketroids, not hackers...



Recent comments
9 hours 57 min ago
3 days 23 hours ago
4 days 8 hours ago
2 weeks 3 days ago
3 weeks 3 days ago
3 weeks 5 days ago
4 weeks 22 hours ago
4 weeks 1 day ago
4 weeks 1 day ago
4 weeks 5 days ago