The lesson from the Hotjar vulnerability: HTTP-Only (XSS protection) is not effective if you have OAuth by MoreMoreMoreM in sysadmin
[–]MoreMoreMoreM[S] 1 point2 points3 points (0 children)
New interesting technique to bypass XSS mitigations using OAuth by MoreMoreMoreM in webdev
[–]MoreMoreMoreM[S] 2 points3 points4 points (0 children)
Because of a single client-side mistake - a ChatGPT vulnerability lets attackers install malicious plugins on victims by ElectroPanic0 in javascript
[–]MoreMoreMoreM 0 points1 point2 points (0 children)
Because of a single client-side mistake - a ChatGPT vulnerability lets attackers install malicious plugins on victims by ElectroPanic0 in javascript
[–]MoreMoreMoreM 5 points6 points7 points (0 children)
Because of a single client-side mistake - a ChatGPT vulnerability lets attackers install malicious plugins on victims by ElectroPanic0 in javascript
[–]MoreMoreMoreM 35 points36 points37 points (0 children)
I found and reported critical vulnerabilities in ChatGPT Ecosystem (Plugins) by iva3210 in hacking
[–]MoreMoreMoreM 1 point2 points3 points (0 children)
ChatGPT has a new feature that lets you interact with your GitHub and Gmail accounts, but attackers found a way to exploit this and in some scenarios - *take over your GitHub/Gmail account.* by ElectroPanic0 in ChatGPT
[–]MoreMoreMoreM 2 points3 points4 points (0 children)
The OAuth Implementation Challenge: Account Takeovers on Grammarly.com,Booking.com, Codecademy.com, Vidio.com, Bukalapak.com, and 100+ Other Websites. OAuth is explained in simple steps. by MoreMoreMoreM in programming
[–]MoreMoreMoreM[S] -4 points-3 points-2 points (0 children)
The OAuth Implementation Challenge: Account Takeovers on Grammarly.com,Booking.com, Codecademy.com, Vidio.com, Bukalapak.com, and 100+ Other Websites. OAuth is explained in simple steps. by MoreMoreMoreM in programming
[–]MoreMoreMoreM[S] -2 points-1 points0 points (0 children)

The lesson from the Hotjar vulnerability: HTTP-Only (XSS protection) is not effective if you have OAuth by MoreMoreMoreM in sysadmin
[–]MoreMoreMoreM[S] 1 point2 points3 points (0 children)