Re: [SC-L] SC-L Digest, Vol 3, Issue 73

2007-04-09 Thread Frederik De Keukelaere
recently discovered, it might be good to have such an overview to look at it from a security point of view. > Brian Frederik --- Frederik De Keukelaere, Ph.D. Post-Doc Researcher IBM Research, Tokyo Research Laboratory___ Secure Coding mailing

Re: [SC-L] JavaScript Hijacking

2007-04-06 Thread Frederik De Keukelaere
ot quite find a way to achieve this in IE. We tried several things such as replacing Array and Object constructor as well as as overriding eval, neither of which worked. Do you have any suggestions about how to port this attack to IE? Btw, thanks for the papers. Kind Regards, Fred