{"id":3966,"date":"2022-01-10T21:21:01","date_gmt":"2022-01-11T02:21:01","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=3966"},"modified":"2022-01-10T21:21:05","modified_gmt":"2022-01-11T02:21:05","slug":"beware-of-the-html-smuggling-attacks","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/","title":{"rendered":"Beware of the HTML smuggling attacks"},"content":{"rendered":"\n<p>HTML smuggling techniques bypass traditional network security solutions, such as email scanners, proxies, and sandboxes, by using the features of HTML5 and Javascript. This is done by generating malicious HTML code within the browser on the target device that is already within the security perimeter of the network. Most network security solutions work by monitoring the &#8220;wire&#8221; or stream of data entering and leaving the network for patterns and signatures of known or suspected malware within the byte stream. Through the use of HTML smuggling, the malicious payload is built within the browser on the target device so that no objects are transferred over the wire for detection by perimeter network security systems.<\/p>\n\n\n\n<p>Attacks of this type allow a malicious actor to \u201csmuggle\u201d an encoded script within an HTML attachment or specially crafted web page. If the target opens the HTML in their web browser, the malicious script is decoded and the payload is deployed to their device. Therefore, instead of a malicious executable passing directly through a network, the attacker builds the malware locally behind a firewall.<\/p>\n\n\n\n<p>The goal of HTML smuggling is to deliver a malicious payload to the target device, and this is usually done by downloading via a data URL (data \ud83d\ude42 or by creating a Javascript blob with the appropriate MIME type. to trigger a download to the device. client device. The Duri malware, for example, uses the Javascript blob technique to create and download the malicious payload on the target device.<\/p>\n\n\n\n<p>When triggered by visiting a malicious website, Duri&#8217;s preloader uses Javascript to create a ZIP file and deposit it on the target PC. Then the user must be tricked into opening the ZIP file. If this happens, the contents of the ZIP file are invoked: a Windows Installer package that will install the malware payload on the target device.<\/p>\n\n\n\n<p>This threat is not unstoppable either, a good network security design uses multiple layers of security provided by different technologies to achieve a \u201cdefense in depth\u201d. Therefore, even if the malware manages to pass the perimeter of the network, it could be detected or blocked by other defensive systems within the network.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cyber\u200b\u200bthreats are many that we can find on the web but&#8230; today we will see what HTML smuggling attacks are capable&#8230;&#8230;.<\/p>\n","protected":false},"author":1,"featured_media":3967,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-3966","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Beware of the HTML smuggling attacks - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Beware of the HTML smuggling attacks - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2022-01-11T02:21:01+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-01-11T02:21:05+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1437\" \/>\n\t<meta property=\"og:image:height\" content=\"921\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"Beware of the HTML smuggling attacks\",\"datePublished\":\"2022-01-11T02:21:01+00:00\",\"dateModified\":\"2022-01-11T02:21:05+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/\"},\"wordCount\":364,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/HTML.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/\",\"name\":\"Beware of the HTML smuggling attacks - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/HTML.jpg\",\"datePublished\":\"2022-01-11T02:21:01+00:00\",\"dateModified\":\"2022-01-11T02:21:05+00:00\",\"description\":\"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/HTML.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2022\\\/01\\\/HTML.jpg\",\"width\":1437,\"height\":921},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/beware-of-the-html-smuggling-attacks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Beware of the HTML smuggling attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Beware of the HTML smuggling attacks - Truxgo Server Blog","description":"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/","og_locale":"es_MX","og_type":"article","og_title":"Beware of the HTML smuggling attacks - Truxgo Server Blog","og_description":"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......","og_url":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/","og_site_name":"Truxgo Server Blog","article_published_time":"2022-01-11T02:21:01+00:00","article_modified_time":"2022-01-11T02:21:05+00:00","og_image":[{"width":1437,"height":921,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"Beware of the HTML smuggling attacks","datePublished":"2022-01-11T02:21:01+00:00","dateModified":"2022-01-11T02:21:05+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/"},"wordCount":364,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/","url":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/","name":"Beware of the HTML smuggling attacks - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg","datePublished":"2022-01-11T02:21:01+00:00","dateModified":"2022-01-11T02:21:05+00:00","description":"Cyber\u200b\u200bthreats are many that we can find on the web but... today we will see what HTML smuggling attacks are capable to do.......","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2022\/01\/HTML.jpg","width":1437,"height":921},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/beware-of-the-html-smuggling-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Beware of the HTML smuggling attacks"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3966","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=3966"}],"version-history":[{"count":1,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3966\/revisions"}],"predecessor-version":[{"id":3968,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3966\/revisions\/3968"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/3967"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=3966"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=3966"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=3966"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}