Thursday, December 03, 2009

Clientless SSL VPN products break web browser domain-based security models

Clientless SSL VPN products from multiple vendors like Cisco ,Juniper and others operate in a way that breaks fundamental browser security mechanisms. An attacker could use these devices to bypass authentication or conduct other web-based attacks.

Read More

No comments: