ArticleWhat is Cross-site-scripting and how does it work?
What is Cross site scripting and how does it work?: Cross Site Scripting (XSS) • Knowledge • XSS • knowledge, xss
Reflected, stored, and DOM-based XSS writeups with practical payload analysis and defensive guidance.
ArticleWhat is Cross site scripting and how does it work?: Cross Site Scripting (XSS) • Knowledge • XSS • knowledge, xss
ArticleDOM XSS using web messages and a JavaScript URL: This lab demonstrates a DOM based redirection vulnerability that is triggered via web messaging. • P…
ArticleDOM XSS using web messages and a JavaScript URL: This lab demonstrates a DOM based redirection vulnerability triggered by web messaging. • PortSwigge…
ArticleExploiting clickjacking vulnerability to trigger DOM based XSS: This lab contains an XSS vulnerability that is triggered by a click. • PortSwigger •…
ArticleDOM XSS in jQuery anchor href attribute sink using location.search source: Exploit a DOM XSS in the feedback page to make the “back” link execute ale…
ArticleDOM XSS sink using location.search: Exploit the search endpoint’s reflected output to achieve XSS by breaking out of the single‑quoted context and in…
ArticleHow does sinks working with dom based xss: Clarify what sources and sinks are in DOM based XSS, show practical examples for the three main sink categ…
ArticleStored XSS into HTML context with nothing encoded: Experiment with XSS filter evasion techniques to achieve JavaScript execution without user interac…
ArticleWhat is cross site scripting and how does it work?: Give a clear, practical overview of cross‑site scripting (XSS): what it is, how it works, the thr…
ArticleDOM XSS in innerHTML sink using source location.search: in this example I just walked through different payloads for XSS DOM, • HTB Academy • DOM XSS…
ArticleReflected XSS into HTML context with most tags and attributes blocked: Perform a reflected XSS in the search feature that is protected by a WAF, and…
ArticleLearn about Reflected XSS: Reflected XSS — HTML Context (ENHANCED) Goal: Understand and exploit reflected XSS when attacker input is inserted into an…
ArticleDOM XSS in document.write sink using source: Exploit a DOM based cross site scripting (XSS) vulnerability caused by the app writing location.search d…
ArticleStored XSS into HTML context with nothing encoded: Submit a blog comment that executes alert() when any user views the post (stored/persistent XSS).…
ArticleReflected XSS into HTML context with nothing encoded: This lab contains a simple reflected cross site scripting vulnerability in the search functiona…
Article[Mutillidae] DOM XSS etc.: I have started the catch up all the definitions also catch up the fundamentals again. • Security • XSS • security, xss
ArticleReported my first Bug Bounty finding: Bug Bounty Hunting Journey – First Steps • BugBounty • XSS • bugbounty, xss