XSS Payloads(@XssPayloads) 's Twitter Profileg
XSS Payloads

@XssPayloads

ID:2893592123

linkhttps://xss-payloads.paracyberbellum.io calendar_today26-11-2014 17:54:23

1,5K Tweets

43,1K Followers

0 Following

XSS Payloads(@XssPayloads) 's Twitter Profile Photo

POST to XSS: Leveraging Pseudo Protocols to Gain JavaScript Evaluation in SSO Flows, very interesting article by Lauritz
bit.ly/4dEsSYA

account_circle
XSS Payloads(@XssPayloads) 's Twitter Profile Photo

A payload to bypass Akamai WAF, by jp seg
?foobar=<foo%20bar=%250a%20onclick=<your js code>
Works with any tag and any event handler

account_circle
XSS Payloads(@XssPayloads) 's Twitter Profile Photo

Beyond XSS: Explore the Web Front-end Security Universe, a good site to start and improve with XSS. By huli
bit.ly/46ttM5S

account_circle
XSS Payloads(@XssPayloads) 's Twitter Profile Photo

How we escalated a DOM XSS to a sophisticated 1-click Account Takeover, a great article by Benasin and Long Phan Nguyên
Part 1: bit.ly/49N43qs
Part 2: bit.ly/3xXB2Ld

account_circle
XSS Payloads(@XssPayloads) 's Twitter Profile Photo

A nice collection of Server-Side Prototype Pollution gadgets by Mikhail Shcherbakov and the KTH Royal Institute of Technology
github.com/KTH-LangSec/se…

account_circle
XSS Payloads(@XssPayloads) 's Twitter Profile Photo

SVG File upload payload by Stealthy

<svg> <foreignObject width='100%' height='100%'> <body> <iframe src='javascript:confirm(10)'></iframe> </body> </foreignObject> </svg>

x.com/stealthybugs/s…

account_circle