Author Archives: Atul

FlipKart.com XSS

FlipKart XSS

FlipKart.com is referred to by many, as India’s Amazon. While performing a quick search on FlipKart for a book I could not find elsewhere in India, I saw a link to their mobile website. The single search form tempted me … Continue reading

Tagged , , , , , | 1 Comment

NoScript ClickJacking Bypass

NoScript

NoScript is a free and open-source extension for Mozilla Firefox and allows executable web content such as JavaScript, Java, Flash, Silverlight and other plugins only if the site hosting it is considered is previously whitelisted. Noscript has an advanced ClickJacking … Continue reading

Tagged , , , , | 1 Comment

Domino’s India confesses “Hack”, User information leaked.

Recreating the memories of the infamous McDonald’s Data Breach of 2010, Domino’s India has sent out a email to all their registered Online Store customers about a “hacking attempt” yesterday. Quoting the email message – We have come to know … Continue reading

Tagged , , , | Leave a comment

Open Redirects on Ad Platforms

While searching for some air tickets on Cleartrip.com, I encountered an advertisement (for discounted fares). Checking it carefully revealed one of the most prevalent web-app attacks -  the Open Redirect. OWASP has rated Open Redirect on 10th position in its … Continue reading

Tagged , | Leave a comment