Auditing Korean installed-security plugins: a methodology
Why the browser-to-local-daemon architecture behind Korean banking security plugins (TouchEn/CrossEX/MagicLine-class) is an interesting attack surface, and the framework I use to approach it — without leaking any unverified finding.