Portcullis Labs - Proxy http://labs.portcullis.co.uk Labs Portcullis updates. en Labs portcullis Tue, 22 Feb 2011 11:21:33 GMT http://backend.userland.com/rss 60 Labs Portcullis hhttp://labs.portcullis.co.uk/mg/logo.gif http://labs.portcullis.co.uk XSS Tunnel | Content Wed, 02 Apr 2008 15:12:53 GMT http://labs.portcullis.co.uk/application/xss-tunnelling/xss-tunnel/ <h2>What Is XSS Tunnelling?</h2> <p><a href="/application/xss-tunnelling/">XSS Tunnelling</a> is the tunnelling of HTTP traffic through an XSS Channel to use virtually any application that supports HTTP proxies.</p> <h2>What Is XSS Tunnel?</h2> <p>XSS Tunnel is a standard HTTP proxy which sits on an attacker&rsquo;s system. Any tool that is configured to use it will tunnel its traffic through the active XSS Channel on the <a href="/application/xssshell/">XSS Shell </a>server. The XSS Tunnel converts the request and responds transparently to validate the HTTP responses and XSS Shell requests.</p> <p>Refer to <a href="/application/xss-tunnelling/">XSS Tunnelling paper</a> to read details.</p> <h2>Demonstration Video</h2> <p><a href="/download/xsstunnelling-video.zip">Download XSS Tunnelling demonstration video</a>. Video shows how to use XSS Tunnel to bypass NTLM by exploiting an example permanent XSS.</p> <h2>Download</h2> <p><a href="/download/xssshell-xsstunnell.zip">Download package</a> includes following files :</p> <ul> <li>Binary Release of XSS Tunnel v1.0.8</li> <li>.NET Solution + Source Code for XSS Tunnel v1.0.8</li> <li>XSS Tunnelling White Paper</li> <li>XSS Shell v0.6.2 Release (ASP files, database and documentation)</li> </ul> <p>&nbsp;</p> XSS Tunnelling | Document Wed, 02 Apr 2008 10:25:00 GMT http://labs.portcullis.co.uk/content/xss-tunnelling/ <p>XSS Tunnelling is the tunnelling of HTTP traffic through an XSS Channel to use virtually any application that supports HTTP proxies. This paper explains the idea and the real world implementation.</p> <p><a href="/download/XSS-Tunnelling.pdf">Download Paper</a></p> <p>Tools mentioned in the paper:</p> <ul> <li><a href="/application/xss-tunnelling/xss-tunnel/">XSS Tunnel</a></li> <li><a href="/application/xssshell/">XSS Shell</a></li> </ul>