Hacker News new | ask | show | jobs
Browser Pivoting (FU2FA) (youtube.com)
1 points by raffi 4637 days ago
1 comments

A browser pivot is a way to inherit a user's identity by forcing their browser to fulfill requests for an attacker. This attack gets cookies, session cookies, HTTP authentication, and even SSL sessions authenticated with a client SSL cert.