Monday Nov 24, 2008

Script fragmentation attack

Security researcher of Websense Stephan Chenette found new web attack vector that could potentially render desktop and gateway antivirus products useless. Like TCP fragmentation attacks, this technique involves breaking down web exploits into smaller chunks and sending them out in a synchronous manner to bypass anti-malware signature detection.

Let's discover how this attack works on a simple example. XDR/XHR allows data to be wrapped in an architecture independent manner so data can be transferred between heterogeneous computer systems and it's widely used in various applications that interchange data between such systems).

Security experts say that it's not actually a browsers vulnerability.

If this post was somehow helpful/interesting please share it!




Comments:

Post a Comment:
Comments are closed for this entry.