Browser Vulnerabilities
- rely on users to upgrade to new versions and install patches
Browser Helper Objects (BHOs)
Access via Browser
Browser Intrusion Artifacts (4)
Browser Attacks (method examples)
IE Home Page Setting
\Software\Microsoft\Internet Explorer\Main\Start Page
IE Add-ons
Internet Options
Manage Add-Ons
Safari Extensions
Preferences
Extensions
Java Runtime Environment (definition)
runtime portion of Java software (only thing needed to run Java via web browser)
JRE (parts)
Java plug-in (definition)
XSS
Cross Site Scripting (both client and server)
XSS Persistent
- data (from attacker) saved by server and permanently displayed on “normal” pages without proper HTML escaping
XSS non-persistent
Artifacts for XSS
Locations of browser caches
in profiles
Artifacts for BHOs
- JAR files (C:\Users\AppData\LocalLow\Sun\Java\Deployment\cache