October 2018
Intermediate to advanced
528 pages
12h 33m
English
In this attack, we'll use a similar setup to the credential-harvesting attack, this time embedding a custom Java applet into the page that prompts the user for execution privileges. Once the user accepts the prompt, the payload is executed and connects back to the our machine, allowing for remote access:

Read now
Unlock full access