osirislab / Project-Ideas

A place to discuss potential projects for students of the ISIS Lab.
385 stars 79 forks source link

Blog Post on Type Confusion and Content Sniffing #33

Open HockeyInJune opened 11 years ago

HockeyInJune commented 11 years ago

Research Type Confusion and Content Sniffing, and build a working payload for a vulnerable browser (like IE 6).

Often not discussed, this complex vulnerability has huge ramifications on the web. Although having multiple short bursts of popularity with GIFAR and JPEGZIP, this vulnerability still doesn't have an OWASP page. Please feel free to add any more resources you find on this subject.

General Information