Connection String Parameter Pollution

Black Hat DC: Inside CSSP Hijacking Attacks

A pair of Spanish researchers here today
demonstrated a way to hack the connection between a Web application and
a database, letting the attacker hijack Web credentials and perform
other nefarious activities. Read the full article. [Dark Reading]

Subscribe to our newsletter, Threatpost Today!

Get the latest breaking news delivered daily to your inbox.