
Thomas Orlita
@thomasorlita
web & browser security
websecblog.com
ID: 771288296739762176
https://ThomasOrlita.com 01-09-2016 10:07:14
48 Tweet
704 Takipçi
309 Takip Edilen


XSS at Vodafone Czech openbugbounty.org/reports/634838/



Reflected XSS in Google Code Jam #XSS Google VRP (Google Bug Hunters) blog.thomasorlita.cz/vulns/reflecte…

Use Google's CSP Evaluator to find ways to bypass CSP on websites using Angular libraries or JSONP endpoints. #XSS Google VRP (Google Bug Hunters) blog.thomasorlita.cz/vulns/google-c…










Untrusted Types just got a new UI with better filtering options and features thanks to Thomas Orlita! Check it out! github.com/filedescriptor…



Bug write-up for Google Extensions thanks Thomas Orlita and others for the help :) ndevtk.github.io/writeups/2023/… this writeup does include some free XSSs I got board of waiting.


XSS @Angular vulnerability by escaping the sandbox with "constructor.constructor" bypass on McDonald's.com youtube.com/watch?v=Aa9fZF…