
anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc
Preview meta tags from the anchor.fm website.
Linked Hostnames
13- 51 links toanchor.fm
- 2 links topod.spoti.fi
- 2 links tosupport.spotify.com
- 1 link todayzerosec.com
- 1 link toopen.spotify.com
- 1 link toovercast.fm
- 1 link topca.st
- 1 link topodcasts.apple.com
Thumbnail

Search Engine Appearance
A Windows Keyhole and Buggy OAuth by Day[0]
A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9
Bing
A Windows Keyhole and Buggy OAuth by Day[0]
A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9
DuckDuckGo

A Windows Keyhole and Buggy OAuth by Day[0]
A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9
General Meta Tags
22- titleA Windows Keyhole and Buggy OAuth by Day[0]
- templateloggedOut
- charsetutf-8
- X-UA-CompatibleIE=edge,chrome=1
- cache-controlno-cache, must-revalidate, post-check=0, pre-check=0
Open Graph Meta Tags
10- og:titleA Windows Keyhole and Buggy OAuth by Day[0]
- og:site_nameSpotify for Creators
- og:imagehttps://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
- og:image:secure_urlhttps://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
- og:image:width1200
Twitter Meta Tags
12- twitter:titleA Windows Keyhole and Buggy OAuth by Day[0]
- twitter:site@spotifycreator
- twitter:descriptionA short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9
- twitter:imagehttps://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
- twitter:cardsummary_large_image
Link Tags
18- alternatehttps://anchor.fm/a121a24/podcast/rss
- alternatehttps://anchor.fm/pod/api/v3/episodes/e2roqoc/oembed?title=A%20Windows%20Keyhole%20and%20Buggy%20OAuth%20by%20Day%5B0%5D
- apple-touch-icon-precomposed//d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-57x57.png
- apple-touch-icon-precomposed//d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-114x114.png
- apple-touch-icon-precomposed//d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-72x72.png
Links
65- https://anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc
- https://anchor.fm/dayzerosec/episodes/Attack-of-the-CUPS-and-Exploiting-Web-Views-via-HSTS-e2p1gds
- https://anchor.fm/dayzerosec/episodes/Attacking-Browser-Extensions-and-CyberPanel-e2qhaie
- https://anchor.fm/dayzerosec/episodes/Buggy-Operating-Systems-Are-Coming-to-Town-e2sco8h
- https://anchor.fm/dayzerosec/episodes/Deanonymization-with-CloudFlare-and-Subarus-Security-Woes-e2u1f97