What the heck are these webpages up to? Quinn Norton - @quinnnorton - - PowerPoint PPT Presentation

what the heck are these webpages up to
SMART_READER_LITE
LIVE PREVIEW

What the heck are these webpages up to? Quinn Norton - @quinnnorton - - PowerPoint PPT Presentation

What the heck are these webpages up to? Quinn Norton - @quinnnorton Raphal Vinot - @rafi0t Simple site Not so simple What makes sites complicated? What makes sites complicated? and how do we capture that? Under the hood Reading the


slide-1
SLIDE 1

What the heck are these webpages up to?

Quinn Norton - @quinnnorton Raphaël Vinot - @rafi0t

slide-2
SLIDE 2
slide-3
SLIDE 3

Simple site

slide-4
SLIDE 4
slide-5
SLIDE 5

Not so simple

slide-6
SLIDE 6
slide-7
SLIDE 7

What makes sites complicated?

slide-8
SLIDE 8

What makes sites complicated? … and how do we capture that?

slide-9
SLIDE 9

Under the hood

slide-10
SLIDE 10

Reading the tree

slide-11
SLIDE 11

Reading the tree

slide-12
SLIDE 12

Reading the tree

slide-13
SLIDE 13

Reading the tree

slide-14
SLIDE 14

Reading the tree

slide-15
SLIDE 15

Weird shit we’ve found

slide-16
SLIDE 16

Sneaky mixed TLS content (defeats browser warning)

slide-17
SLIDE 17

HTTP Meta redirect

slide-18
SLIDE 18

Ad tech and widgets

slide-19
SLIDE 19

GDPR Violations (hilarious)

slide-20
SLIDE 20

GDPR Violations (hilarious)

slide-21
SLIDE 21

Future

slide-22
SLIDE 22
slide-23
SLIDE 23

Moar future

  • Passing a cookie
  • Whitelist (internal / expected domains)
  • Searching inside of trees
  • Comparing trees
  • Node inspector
  • Highlighting meta redirects
  • … aaaand?
slide-24
SLIDE 24
  • https://lookyloo.circl.lu
  • https://github.com/CIRCL/lookyloo
  • Contact:

○ Quinn Norton - quinn@quinnnorton.com ○ Raphaël Vinot - raphael.vinot@circl.lu