Click to get Security Testing Quote

Plynt Blog

Stealing Passwords via Browser Refresh

by Roshen Chandran  | 29 Jul 2005 | Comments

The browser’s “Refresh” feature was the source of a little known vulnerability until last year, when Karmendra analyzed the issue in Stealing Passwords via Browser Refresh.

Karmendra showed how applications that did not issue an HTTP redirect during authentication could be persuaded to reveal the previous user’s password, even after the user had logged out of the application. It just required the right sequence of “Back” and “Refresh” to catch the password. And it was stunningly simple.

We did an informal poll to see how frequently we come across this vulnerability in our tests today. They have dropped from 50% of apps a year ago to less than 10% now. Sure, informal polls are unscientific, but the numbers suggest that more applications that get tested for security address the problem today. That’s good news.

Today Karmendra, geek, fellow-blogger, museum-enthusiast turns entrepreneur. He joins his friend Seemanta to found SecurEyes. Best wishes from humsab@paladion, KK, Seemanta!


Plynt provides penetration testing and code review services to clients worldwide. If you are interested, please contact us for a quote. We’ll get back to you within one working day.
Add yours.closed for this post.

1. Karmendra | 27 Oct 2005 7:35 PM

Hi,
I just got this link when i was searching in google with my name, I am a CS Enggineer just passed out this year and currently working at Indian Institute of Science, I read ur article ... it was good knowing that. I was just thinking of my solution to this problem, I will tell u when i build upon it.

All the very best to you Karmendra K.