busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides
busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides
busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
Counter-Acti<strong>on</strong> Statements<br />
top.locati<strong>on</strong> = self.locati<strong>on</strong><br />
top.locati<strong>on</strong>.href = document.locati<strong>on</strong>.href<br />
top.locati<strong>on</strong>.href = self.locati<strong>on</strong>.href<br />
top.locati<strong>on</strong>.replace(self.locati<strong>on</strong>)<br />
top.locati<strong>on</strong>.href = window.locati<strong>on</strong>.href<br />
top.locati<strong>on</strong>.replace(document.locati<strong>on</strong>)<br />
top.locati<strong>on</strong>.href = window.locati<strong>on</strong>.href<br />
top.locati<strong>on</strong>.href = "URL"<br />
document.write(’’)<br />
top.locati<strong>on</strong> = locati<strong>on</strong><br />
top.locati<strong>on</strong>.replace(document.locati<strong>on</strong>)<br />
top.locati<strong>on</strong>.replace(’URL’)<br />
top.locati<strong>on</strong>.href = document.locati<strong>on</strong><br />
top.locati<strong>on</strong>.replace(window.locati<strong>on</strong>.href)<br />
top.locati<strong>on</strong>.href = locati<strong>on</strong>.href<br />
self.parent.locati<strong>on</strong> = document.locati<strong>on</strong><br />
parent.locati<strong>on</strong>.href = self.document.locati<strong>on</strong><br />
top.locati<strong>on</strong>.href = self.locati<strong>on</strong><br />
top.locati<strong>on</strong> = window.locati<strong>on</strong><br />
top.locati<strong>on</strong>.replace(window.locati<strong>on</strong>.pathname)<br />
window.top.locati<strong>on</strong> = window.self.locati<strong>on</strong><br />
setTimeout(functi<strong>on</strong>(){document.body.innerHTML=’’;},1);<br />
window.self.<strong>on</strong>load = functi<strong>on</strong>(evt){document.body.innerHTML=’’;}<br />
var url = window.locati<strong>on</strong>.href; top.locati<strong>on</strong>.replace(url)