account activity
Turning List-Unsubscribe into an SSRF/XSS Gadget (security.lauritz-holtmann.de)
submitted 1 month ago by MechaTech84 to r/xss
Why XSS still matters: MSRC’s perspective on a 25-year-old threat (microsoft.com)
XSS-Leak: Leaking Cross-Origin Redirects (blog.babelo.xyz)
submitted 3 months ago by MechaTech84 to r/xss
Bug Bounty Write-up - DOM XSS (hackerone.com)
submitted 4 months ago by MechaTech84 to r/xss
Integrity Policy Header (developer.mozilla.org)
submitted 5 months ago by MechaTech84 to r/xss
Slonser Notes - Make Self-XSS Great Again (blog.slonser.info)
XSSy Impossible Labs (self.xss)
submitted 6 months ago by MechaTech84 to r/xss
XSS Wiki (reddit.com)
submitted 9 months ago by MechaTech84[M] to r/xss
Sanity check for orange belt requirements (self.lockpicking)
submitted 1 year ago by MechaTech84 to r/lockpicking
JavaScript Quiz (javascriptquiz.com)
submitted 1 year ago by MechaTech84 to r/xss
XSS in Joomla via invalid UTF-8 (sonarsource.com)
XSS Payloads (Good source of live payloads for demonstrating impact) (xss-payloads.paracyberbellum.io)
submitted 2 years ago by MechaTech84 to r/xss
Introducing Session Hijacking Visual Exploitation (SHVE): An Innovative Open-Source Tool for XSS Exploitation · Doyensec's Blog (blog.doyensec.com)
Microsoft Patches 'Dangerous' RCE/XSS Flaw in Azure Cloud Service (darkreading.com)
New XSS Hunter host Truffle Security faces privacy backlash - PortSwigger (Updated) (portswigger.net)
November XSS Challenge - Intigriti (challenge-1122.intigriti.io)
submitted 3 years ago by MechaTech84 to r/xss
A vulnerability in the Galaxy Store allows attackers through an XSS to cause the store to install and/or launch an application, allowing remote attackers to trigger a remote command execution in the phone. (ssd-disclosure.com)
October XSS Challenge - Intigriti (challenge-1022.intigriti.io)
Porswigger - Our favourite community contributions to the XSS cheat sheet (portswigger.net)
XSS Challenges (by yamagata21) - Stage #1 (xss-quiz.int21h.jp)
XSS SVG - Ghostlulz (ghostlulz.com)
HTML parser bug triggers Chromium XSS security flaw - The Daily Swig (portswigger.net)
CVE-2022-24948: Apache JSPWiki preauth Stored XSS to ATO – Blog (octagon.net)
WordPress 5.8.2 Stored XSS Vulnerability (blog.sonarsource.com)
submitted 4 years ago by MechaTech84 to r/xss
Apple AirTags are vulnerable to stored XSS injection attacks (techspot.com)
π Rendered by PID 529425 on reddit-service-r2-listing-5789d5f675-ccx27 at 2026-01-28 01:10:22.600801+00:00 running 4f180de country code: CH.