headermask image

header image

Drive-by Download: Where Network Security Meets WebAppSec

DEMO

This post was due since the Bank of India hack incident, and was fueled by PDP’s Drive-by Java post, which is a very simple, yet a well thought of extension (sort of) to the Drive-by Download attack. This post is aimed to provide a clearer understanding of the Drive-by Download attack (via a demo).

Citing Wikipedia, Any download that happens without knowledge of the user can be referred to as Drive-by Download (DBD). Pretty obviously, an attacker downloads (or uploads, depending on the perspective) malwares, viruses etc., especially in case of a zero-day. Now, I should also specify that by the sub-title “network security meets web application security”, I simply wish to point that viruses, malwares, worms are not really a concern of WebAppSec. Please note that these exclude the Javascript payloads.

Here is the video of Bank of India Hack, showing DBD in action.

Here is my demo of DBD in action.
All files downloaded to your system are 0 (zero) KB and are completely harmless. You’ve my word. :)

If you liked my post, feel free to subscribe to my rss feeds

2 Comments so far (Add 1 more)

  1. f*** it, your blog has spam!!! hehe

    1. dada on November 4th, 2007 at 10:03 am
  2. My mistake.
    Removed ‘em now. Thanks :)

    2. Bipin 3~ Upadhyay on November 4th, 2007 at 10:13 am

Post a Comment

Your email is never published nor shared. Required fields are marked *

*
*
Place your code as follows:
<pre name="code" class"language"> <pre/> language can be php, ruby etc.