10.07.2015 Views

How To Rob An Online Bank And Get Away With It - Acros Security

How To Rob An Online Bank And Get Away With It - Acros Security

How To Rob An Online Bank And Get Away With It - Acros Security

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

ACROS PUBLIC Page 35SOURCE Boston 2012Server-Side Code ExecutionExamplesImpactJava code injection (JBoss bug in 2010)PHP code injection (eval, system, includes...)Shell argument injection (command1&command2)Buffer overflowsChange e-banking application codeObtain database/WS credentials,issue direct requests to DB or back-end WS

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!