Go offline with the Player FM app!
Top 10 Web Hacking Techniques of 2024 - James Kettle - ASW #318
Manage episode 467237788 series 2086045
We're getting close to two full decades of celebrating web hacking techniques. James Kettle shares which was his favorite, why the list is important to the web hacking community, and what inspires the kind of research that makes it onto the list. We discuss why we keep seeing eternal flaws like XSS and SQL injection making these lists year after year and how clever research is still finding new attack surfaces in old technologies. But there's a lot of new web technology still to be examined, from HTTP/2 and HTTP/3 to WebAssembly.
Segment Resources:
- Top 10, 2024: https://portswigger.net/research/top-10-web-hacking-techniques-of-2024
- Full nomination list: https://portswigger.net/research/top-10-web-hacking-techniques-of-2024-nominations-open
- Project overview: https://portswigger.net/research/top-10-web-hacking-techniques
Visit https://www.securityweekly.com/asw for all the latest episodes!
Show Notes: https://securityweekly.com/asw-318
341 episodes
Manage episode 467237788 series 2086045
We're getting close to two full decades of celebrating web hacking techniques. James Kettle shares which was his favorite, why the list is important to the web hacking community, and what inspires the kind of research that makes it onto the list. We discuss why we keep seeing eternal flaws like XSS and SQL injection making these lists year after year and how clever research is still finding new attack surfaces in old technologies. But there's a lot of new web technology still to be examined, from HTTP/2 and HTTP/3 to WebAssembly.
Segment Resources:
- Top 10, 2024: https://portswigger.net/research/top-10-web-hacking-techniques-of-2024
- Full nomination list: https://portswigger.net/research/top-10-web-hacking-techniques-of-2024-nominations-open
- Project overview: https://portswigger.net/research/top-10-web-hacking-techniques
Visit https://www.securityweekly.com/asw for all the latest episodes!
Show Notes: https://securityweekly.com/asw-318
341 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.