18.02.2013 Views

busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides

busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides

busting-frame-busting-a-study-of-clickjacking-vulnerabilities-on-popular-sites-slides

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Counter-Acti<strong>on</strong> Statements<br />

top.locati<strong>on</strong> = self.locati<strong>on</strong><br />

top.locati<strong>on</strong>.href = document.locati<strong>on</strong>.href<br />

top.locati<strong>on</strong>.href = self.locati<strong>on</strong>.href<br />

top.locati<strong>on</strong>.replace(self.locati<strong>on</strong>)<br />

top.locati<strong>on</strong>.href = window.locati<strong>on</strong>.href<br />

top.locati<strong>on</strong>.replace(document.locati<strong>on</strong>)<br />

top.locati<strong>on</strong>.href = window.locati<strong>on</strong>.href<br />

top.locati<strong>on</strong>.href = "URL"<br />

document.write(’’)<br />

top.locati<strong>on</strong> = locati<strong>on</strong><br />

top.locati<strong>on</strong>.replace(document.locati<strong>on</strong>)<br />

top.locati<strong>on</strong>.replace(’URL’)<br />

top.locati<strong>on</strong>.href = document.locati<strong>on</strong><br />

top.locati<strong>on</strong>.replace(window.locati<strong>on</strong>.href)<br />

top.locati<strong>on</strong>.href = locati<strong>on</strong>.href<br />

self.parent.locati<strong>on</strong> = document.locati<strong>on</strong><br />

parent.locati<strong>on</strong>.href = self.document.locati<strong>on</strong><br />

top.locati<strong>on</strong>.href = self.locati<strong>on</strong><br />

top.locati<strong>on</strong> = window.locati<strong>on</strong><br />

top.locati<strong>on</strong>.replace(window.locati<strong>on</strong>.pathname)<br />

window.top.locati<strong>on</strong> = window.self.locati<strong>on</strong><br />

setTimeout(functi<strong>on</strong>(){document.body.innerHTML=’’;},1);<br />

window.self.<strong>on</strong>load = functi<strong>on</strong>(evt){document.body.innerHTML=’’;}<br />

var url = window.locati<strong>on</strong>.href; top.locati<strong>on</strong>.replace(url)

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!