10.07.2015 Views

How To Rob An Online Bank And Get Away With It - Acros Security

How To Rob An Online Bank And Get Away With It - Acros Security

How To Rob An Online Bank And Get Away With It - Acros Security

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

ACROS PUBLIC Page 24SOURCE Boston 2012User – Public Server – Back End ServerJSPPHPPOST /transfersource=1 & dest=2 & amount=100source = request.getParameter(“source”) // 1amount = request.getParameter(“amount”) // 100IF NOT user_authorized_for(source) THEN ERROR()IF disposable(source) < amount THEN ERROR()Call BackEndTransaction(request)POST /BackEndTransactionsource=1 & dest=2 & amount=100source = $_POST[“source”] // 1dest = $_POST[“dest”] // 2amount = $_POST[“amount”] // 100

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!