Chapter 15. Client-Side Browser Exploits

In this chapter, you will learn about client-side vulnerabilities and several tools for discovering client-side vulnerabilities. This chapter mostly focuses on vulnerabilities affecting Internet Explorer on the Microsoft Windows platform, but the concepts can be extended to other classes of client-side vulnerabilities and other platforms where client-side applications run.

  • Why client-side vulnerabilities are interesting

  • Internet Explorer security concepts

  • Notable client-side exploits in recent history

  • Finding new browser-based vulnerabilities with MangleMe, AxEnum, and AxMan

  • Heap spray to exploit

  • Protecting yourself from client-side exploits

Get Gray Hat Hacking, Second Edition, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.