nullcon Delhi 2012: Day 2's action

13/14

Poking servers with Facebook (and other Web apps)

In this session, Riyaz Walikar demonstrated how an attacker could abuse the functionality that Web applications provide to pull data from other Internet facing Web Applications for internal use or to verify application availability.

Executive brief for this session (PDF)

<<In case you missed Day 1’s action, catch it here.

 

View All Photo Stories