Author Topic: Reflected File Download: a new web attack vector  (Read 846 times)

0 Members and 1 Guest are viewing this topic.

Offline Axon

  • VIP
  • King
  • *
  • Posts: 2047
  • Cookies: 319
    • View Profile
Reflected File Download: a new web attack vector
« on: October 31, 2014, 03:02:13 pm »
http://blog.spiderlabs.com/2014/10/reflected-file-download-the-white-paper.html

Just by downloading a file from a trusted domain, attackers can gain full control over your machine. So,this means no more RAT's?

Offline 2d8

  • /dev/null
  • *
  • Posts: 17
  • Cookies: 1
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #1 on: October 31, 2014, 05:39:04 pm »
User have to follow the link and run by himself downloaded file, in order to execute malicious script.
Just a new way to install dropper on user's host, or RAT if it's better option for you.
« Last Edit: October 31, 2014, 05:39:30 pm by 2d8 »

Offline Nortcele

  • Knight
  • **
  • Posts: 211
  • Cookies: -42
  • █+█=██
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #2 on: October 31, 2014, 05:43:36 pm »
http://blog.spiderlabs.com/2014/10/reflected-file-download-the-white-paper.html

Just by downloading a file from a trusted domain, attackers can gain full control over your machine. So,this means no more RAT's?

Another fucking reason why we are never safe...
~JaySec
~LulzBlog

TAKE A COOKIE!




0100000101010011010000110100100101001001

Offline M1lak0

  • Peasant
  • *
  • Posts: 129
  • Cookies: 10
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #3 on: November 01, 2014, 07:12:54 am »
Another fucking reason why we are never safe...
Haha true that.. :D
"Security is just an illusion"

Offline Nortcele

  • Knight
  • **
  • Posts: 211
  • Cookies: -42
  • █+█=██
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #4 on: November 01, 2014, 06:22:31 pm »
Haha true that.. :D

We are just basically fucked.
~JaySec
~LulzBlog

TAKE A COOKIE!




0100000101010011010000110100100101001001

Offline M1lak0

  • Peasant
  • *
  • Posts: 129
  • Cookies: 10
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #5 on: November 01, 2014, 09:13:13 pm »

We are just basically fucked.
We? Dude we can fuck them too.. ;)
We hackers fuck them.. ;)
"Security is just an illusion"

Offline Nortcele

  • Knight
  • **
  • Posts: 211
  • Cookies: -42
  • █+█=██
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #6 on: November 01, 2014, 09:23:27 pm »
Yeah but still, we are allllll rapeddd
~JaySec
~LulzBlog

TAKE A COOKIE!




0100000101010011010000110100100101001001

Offline Killordie

  • /dev/null
  • *
  • Posts: 6
  • Cookies: 2
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #7 on: November 03, 2014, 12:10:28 am »
I hate to necro my own post (not really), but all this and more is here: https://evilzone.org/hacking-and-security/blackhat-2014-%28europe%29/

Offline Axon

  • VIP
  • King
  • *
  • Posts: 2047
  • Cookies: 319
    • View Profile
Re: Reflected File Download: a new web attack vector
« Reply #8 on: November 04, 2014, 08:38:09 pm »
I hate to necro my own post (not really), but all this and more is here: https://evilzone.org/hacking-and-security/blackhat-2014-%28europe%29/

Thank you for the input, never seen your original thread. Nonetheless, here a practical exploitation of RFD with JSONP.
http://blog.davidvassallo.me/2014/11/02/practical-reflected-file-download-and-jsonp/