Upgrade to Pro — share decks privately, control downloads, hide ads and more …

Can Request Encryption Fix Your Web Apps?

BreachForce
September 28, 2024
11

Can Request Encryption Fix Your Web Apps?

Title: Can Request Encryption Fix Your Web Apps?
Presenter: Farhan Thakur
Event: BreachForce CyberSecurity Cohort
Talk Date: 11-August-2024

Key Takeaways: An exploration of request encryption techniques and their potential to enhance the security of web applications.

BreachForce

September 28, 2024
Tweet

Transcript

  1. About Me • ~ 3.5 years of cyber security experience

    and 1.5 years of non cyber security experience • Expertise in Offensive Web Application security. • Socials - ◦ Linkedin - https://www.linkedin.com/in/farhanthakur/ ◦ Github - https://github.com/kaminari14
  2. Demonstration • Bypassing symmetric encryption with Key and IV in

    Requests • Bypassing symmetric encryption with key and IV in JS • Bypassing asymmetric encryption • Using Burpcrypto • Bypassing Hybrid encryption