anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc

Preview meta tags from the anchor.fm website.

Linked Hostnames

13

Thumbnail

Search Engine Appearance

Google

https://anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc

A Windows Keyhole and Buggy OAuth by Day[0]

A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9



Bing

A Windows Keyhole and Buggy OAuth by Day[0]

https://anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc

A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9



DuckDuckGo

https://anchor.fm/dayzerosec/episodes/A-Windows-Keyhole-and-Buggy-OAuth-e2roqoc

A Windows Keyhole and Buggy OAuth by Day[0]

A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9

  • General Meta Tags

    22
    • title
      A Windows Keyhole and Buggy OAuth by Day[0]
    • template
      loggedOut
    • charset
      utf-8
    • X-UA-Compatible
      IE=edge,chrome=1
    • cache-control
      no-cache, must-revalidate, post-check=0, pre-check=0
  • Open Graph Meta Tags

    10
    • og:title
      A Windows Keyhole and Buggy OAuth by Day[0]
    • og:site_name
      Spotify for Creators
    • og:image
      https://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
    • og:image:secure_url
      https://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
    • og:image:width
      1200
  • Twitter Meta Tags

    12
    • twitter:title
      A Windows Keyhole and Buggy OAuth by Day[0]
    • twitter:site
      @spotifycreator
    • twitter:description
      A short episode this week, featuring Keyhole which abuses a logic bug in Windows Store DRM, an OAuth flow issue, and a CSRF protection bypass. Links and vulnerability summaries for this episode are available at: https://dayzerosec.com/podcast/265.html [00:00:00] Introduction [00:00:16] Attacking Hypervisors From KVM to Mobile Security Platforms [00:02:30] Keyhole [00:10:12] Drilling the redirect_uri in OAuth [00:18:00] Cross-Site POST Requests Without a Content-Type Header [00:24:03] New AMSI Bypss Technique Modifying CLR.DLL in Memory Podcast episodes are available on the usual podcast platforms: -- Apple Podcasts: https://podcasts.apple.com/us/podcast/id1484046063 -- Spotify: https://open.spotify.com/show/4NKCxk8aPEuEFuHsEQ9Tdt -- Google Podcasts: https://www.google.com/podcasts?feed=aHR0cHM6Ly9hbmNob3IuZm0vcy9hMTIxYTI0L3BvZGNhc3QvcnNz -- Other audio platforms can be found at https://anchor.fm/dayzerosec You can also join our discord: https://discord.gg/daTxTK9
    • twitter:image
      https://d3t3ozftmdmh3i.cloudfront.net/staging/podcast_uploaded_episode400/1589585/1589585-1733134271606-ac27806aa3613.jpg
    • twitter:card
      summary_large_image
  • Link Tags

    18
    • alternate
      https://anchor.fm/a121a24/podcast/rss
    • alternate
      https://anchor.fm/pod/api/v3/episodes/e2roqoc/oembed?title=A%20Windows%20Keyhole%20and%20Buggy%20OAuth%20by%20Day%5B0%5D
    • apple-touch-icon-precomposed
      //d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-57x57.png
    • apple-touch-icon-precomposed
      //d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-114x114.png
    • apple-touch-icon-precomposed
      //d12xoj7p9moygp.cloudfront.net/favicon/favicon-s4p-72x72.png

Links

65