youtu.be/dFLcykwzN58
youtu.be/dFLcykwzN58
SetTimeout is an Api provided by the Browser, It doesn't
live in the V8 source
#Javascript
SetTimeout is an Api provided by the Browser, It doesn't
live in the V8 source
#Javascript
lnkd.in/dKk8UcGr
mited-char-xss-challange-solution-of-nowasky-6ed3fb6387f8
No quotes hell with JS coercion magic & S DOMestify
encoding. Flag captured meow! Dive in:
brutal limited-char XSS CTF! Bypassed no-parens,
#ctf hashtag#javascript hashtag#js
lnkd.in/dKk8UcGr
mited-char-xss-challange-solution-of-nowasky-6ed3fb6387f8
No quotes hell with JS coercion magic & S DOMestify
encoding. Flag captured meow! Dive in:
brutal limited-char XSS CTF! Bypassed no-parens,
#ctf hashtag#javascript hashtag#js
joaxcar.com/blog/2024/12...
Maybe not the best write-up, but I have to allow myself to actually post, rather than refactor, posts. I hope someone finds it useful. And thanks everyone that participated. Special shoutout to @terjanq.me
joaxcar.com/blog/2024/12...
Maybe not the best write-up, but I have to allow myself to actually post, rather than refactor, posts. I hope someone finds it useful. And thanks everyone that participated. Special shoutout to @terjanq.me
pro—real exploits, no fluff: tinyurl.com/fxrv4r32
From DOM manipulation to XSS tricks:
Who's ready to level up? 🔥
#JavaScript #WebHacking
Drop your go-to JS hack below! 👇
pro—real exploits, no fluff: tinyurl.com/fxrv4r32
From DOM manipulation to XSS tricks:
Who's ready to level up? 🔥
#JavaScript #WebHacking
Drop your go-to JS hack below! 👇
I expose client-side hacking tricks that could wreck your
apps (ethically, of course). Think you're safe?
Watch me break it : youtu.be/N0d43HXIm_s
#BrowserSecurity #JavaScript #CyberSecurity
I expose client-side hacking tricks that could wreck your
apps (ethically, of course). Think you're safe?
Watch me break it : youtu.be/N0d43HXIm_s
#BrowserSecurity #JavaScript #CyberSecurity
Smuggling (CL.TE Vulnerability) on YouTube!
Watch now: youtu.be/4cRPrmUMJa4
#Cybersecurity #WebSecurity #HTTPrequestSmuggling
Smuggling (CL.TE Vulnerability) on YouTube!
Watch now: youtu.be/4cRPrmUMJa4
#Cybersecurity #WebSecurity #HTTPrequestSmuggling
Make sure to resubscribe to not not miss on the amazing 🌐research!
go.bsky.app/9JXnB17
Make sure to resubscribe to not not miss on the amazing 🌐research!
go.bsky.app/9JXnB17
blog.ajxchapman.com/xss/challeng...
blog.ajxchapman.com/xss/challeng...
https://cspbypass.com has a compiled list of ways to bypass the Content-Security Policy. Check out the video below 👇
https://cspbypass.com has a compiled list of ways to bypass the Content-Security Policy. Check out the video below 👇
This is an example from earlier this week. It's not hard, but how quick and certain are you?
This is an example from earlier this week. It's not hard, but how quick and certain are you?
📺 Watch here: www.youtube.com/watch?v=qgB0...
🖥️ Follow along with the slides: 0-a.nl/nahamcon/
📺 Watch here: www.youtube.com/watch?v=qgB0...
🖥️ Follow along with the slides: 0-a.nl/nahamcon/
portswigger.net/web-security...
portswigger.net/web-security...
on a serious note I dont think its needed. But all these snippets reminded me of my final challenge in this post joaxcar.com/blog/2023/12...
also made me realize glitch.me is gone. Need to re-host
on a serious note I dont think its needed. But all these snippets reminded me of my final challenge in this post joaxcar.com/blog/2023/12...
also made me realize glitch.me is gone. Need to re-host
Only works in Firefox and Safari
joaxcar.com/fun/worker/a...
Only works in Firefox and Safari
joaxcar.com/fun/worker/a...