当前位置:网站首页>Exploitation and utilization of clickjacking vulnerability
Exploitation and utilization of clickjacking vulnerability
2022-06-11 04:05:00 【Sword-heart】
0x00 brief introduction
1 Speaking of clickjacking, Many people actually don't know what it is . Compared with XSS Come on ,clickjacking It seems mysterious , There are no related vulnerabilities in the dark cloud vulnerability library 10 That's all .
2 Sleepy dragon sent an article before clickjacking Technical documentation for , It's mainly about clickjacking The reason for this , And the method of defense . Here I mainly introduce , How to find clickjacking And how to use . Clickjacking Brief introduction
As a reminder click jacking and json hijacking Not a thing at all , Don't confuse here .
0x01 Case study
1 ClickJacking
Tencent micro-blog ClickhiJacking
Sina Weibo Click to hijack fans
2 Xss combination ClickJacking
Baidu master station reflection type XSS Loophole
One place in Baidu Post Bar Mouseover XSS utilize
Baidu translation reflexive XSS( Clickjacking demo)
You can see the cooperation clickjacking, Some of them look like chicken help XSS Or humble settings , It will also cause serious damage .
0x02 Instance to explain
Said so much , I don't know if I understand . Take a look at the following example .
He designed a page by himself , And then there was a fake button on it , And then iframe The push of the nested original web page overlaps with the button for accepting the award .
But I don't know if it's a clerical error of the cave master , It's the cave master who thinks clickjacking There are still some mistakes in the description of .
There is obviously something wrong with the description of the cave owner .
The correct principle should be like this , The page for receiving the award is at the bottom , But the original iframe The page of is at the top . Then the first graph will be iframe Completely transparent , So the user can only see the following award receiving page . Then the user clicks to receive the award , Actually, I clicked the push in the upper page .
So the position of the blue circle , Should be “ above ” instead of “ below ”.
0x03 Zone ClickJacking mining
I saw the following of this article about sleepy dragon , Jianxin said he should give it to zone Thanks plus clickjacking Defense .
Then I took a look ,zone Thank you for adding confrim, But in fact, this can only alleviate clickjacking The power of , It can't be cured , It is entirely possible to construct 2 A point cheated the user to click .
then zone Focus on 、 like 、 Don't like these features and have no defense , Visual measurement zone There should be no defense at all clickjacking. But I tried , Dark cloud master station is still right clickjacking Defensive , Will detect url Is there a quilt iframe nesting .
Here is a test poc, Those who are interested can do their own research to make better use of the environment .
1 2 3 4 5 6 7 8 9 10 11 12 |
|
Use this clickjacking Of poc Code , You can brush some dark clouds for yourself zone The fans of .
meanwhile , You can also give yourself zone The number of post brushes inside . It is said that the quantity of this favorite is the same as zone Inside the Lord algorithm is closely related to the amount !
This article comes from the dark cloud knowledge base , The copyright of this article belongs to Wuyun knowledge base !
边栏推荐
- 手工测试转不了自动化测试,缺的是什么?
- Esp32 porting lvgl
- Final review of software engineering notes (short answer)
- 什麼樣的人才是幸福的?
- Detailed explanation of network time synchronization (NTP network timing) of video monitoring system
- app直播源码,平台登录页面实现和修改密码页面实现
- Object storage Minio tutorial
- Market prospect analysis and Research Report of single photon counting detector in 2022
- Student teacher examination management system based on SSM framework
- After the college entrance examination, what can I do and how should I choose my major-- From the heart of a college student
猜你喜欢
随机推荐
华生·K的秘密日记
Market prospect analysis and Research Report of engraving laser in 2022
Market prospect analysis and Research Report of hydrogen liquefier in 2022
Market prospect analysis and Research Report of integrated scanner in 2022
Docker swarm installs redis cluster (bitnami/redis cluster:latest)
Source insight 4.0 setting shortcut keys for comments and uncomments
什么样的人才是幸福的?
After the installation of Damon database is completed, query whether it is case sensitive
How to improve the efficiency of regression testing
Host computer development (how to develop host computer)
Brew source change
ESP series module burning firmware
BP神经网络C语言实现总结
Market prospect analysis and Research Report of digital line scan camera in 2022
Several time synchronization methods of Beidou timing system (GPS timing equipment)
代码复现CSRF攻击并解决它
Manual testing cannot be changed to automated testing. What is missing?
从功能测试进阶自动化测试,熬夜7天整理出这一份3000字超全学习指南【附网盘资源】
Construction of esp8266/esp32 development environment
2022-06-10:薯队长从北向南穿过一片红薯地(南北长M,东西宽N),红薯地被划分为1x1的方格, 他可以从北边的任何一个格子出发,到达南边的任何一个格子, 但每一步只能走到东南、正南、西南方向的


![[network] socket programming](/img/df/2afc300bfc2dd319247a4b75ef7e2c.png)






