Re: CSP Bypass on Android prior to 4.4

Posted by E Boogie on Oct 14

Hello again Full disclosure,

One final email. A couple things to note about this.

I’ve been testing A LOT on A LOT of different browsers and Android
Devices.. The more I test, the more It becomes clear that my u0000
vulnerability is not legit and there is a different much larger CSP issues
at play here. (I did a lot of testing before reporting but there is a lot
going on here that caused me to mess up here).

First – The issue is not that…

Rooted CON 2015 – Call For Papers

Posted by omarbv on Oct 14

______ _ _ ____ ___ _ _
/ / _ ___ ___ | |_ ___ __| |/ ___/ _ | | |
/ /| |_) / _ / _ | __/ _ / _` | | | | | | | |
/ / | _ < (_) | (_) | || __/ (_| | |__| |_| | | |
/_/ |_| ____/ ___/ _____|__,_|_______/|_| _|

RootedCON 2015 – ‘Call for Papers’

PLEASE, READ CAREFULLY ALL THE DETAILS IN THIS DOCUMENT.

-=] About RootedCON

RootedCON is a security congress that will take…

OWASP OWTF 1.0 "Lionheart" released!

Posted by Abraham Aranguren on Oct 14

Dear Full Disclosure friends,

We are pleased to let you know that OWASP OWTF 1.0 “Lionheart” has been released!
Dedicated to the courage and hard work shown by all OWASP OWTF contributors,
mentors, everybody that gave us cool ideas, etc. to make this amazing
release happen, to all of you, thank you!

Some links:
– – Handy redirect: http://owtf.org/
(takes you to: https://www.owasp.org/index.php/OWASP_OWTF)
– – Getting started -…