Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Web Cache Exploitation: Advanced Techniques for Static Path Deception and Cache Key Confusion

Black Hat via YouTube

Overview

Coursera Plus Annual Sale: All Certificates & Courses 25% Off!
Learn advanced web cache exploitation techniques in this 36-minute Black Hat conference presentation that introduces powerful new methods for bypassing security limitations. Explore Static Path Deception and discover how to compromise application confidentiality in environments using Nginx behind Cloudflare and Apache behind CloudFront with default configurations. Master Cache Key Confusion to exploit URL parsing inconsistencies in major platforms like Microsoft Azure Cloud, enabling arbitrary cache poisoning and denial of service capabilities in OpenAI and other platforms. Watch a live demonstration combining Cache Key Confusion with an open redirect vulnerability to execute cross-domain JavaScript code by modifying static file responses. Gain access to an open-source vulnerability detection tool and hands-on lab environment to practice cache exploitation techniques while learning a comprehensive methodology for identifying and exploiting URL and HTTP parsing discrepancies.

Syllabus

Gotta Cache Em All: Bending the Rules of Web Cache Exploitation

Taught by

Black Hat

Reviews

Start your review of Web Cache Exploitation: Advanced Techniques for Static Path Deception and Cache Key Confusion

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.