ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

How to Bypass DOMPurify in Bug Bounty with Kevin Mizu (Ep 111)

Автор: Critical Thinking - Bug Bounty Podcast

Загружено: 2025-02-20

Просмотров: 4748

Описание: Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu

Episode 111: In this episode of Critical Thinking - Bug Bounty Podcast Justin interviews Kevin Mizu to showcase his knowledge regarding DOMPurify and its misconfigurations. We walk through some of Kevin’s research, highlighting things like Dangerous allow-lists and URI Attributes, DOMPurify hooks, node manipulation, and DOM Clobbering.

Follow us on twitter at: https://x.com/ctbbpodcast
Got any ideas and suggestions? Feel free to send us any feedback here: [email protected]
Shoutout to   / realytcracker   for the awesome intro music!


====== Links ======
Follow your hosts Rhynorater and Rez0 on Twitter:
https://x.com/Rhynorater
https://x.com/rez0__


====== Ways to Support CTBBPodcast ======
Hop on the CTBB Discord at https://ctbb.show/discord!

We also do Discord subs at $25, $10, and $5 - premium subscribers get access to private masterclasses, exploits, tools, scripts, un-redacted bug reports, etc.

You can also find some hacker swag at https://ctbb.show/merch!


====== Resources ======
Exploring the DOMPurify library: Bypasses and Fixes (1/2)
https://mizu.re/post/exploring-the-do...

Exploring the DOMPurify library: Hunting for Misconfigurations (2/2
https://mizu.re/post/exploring-the-do...

Dom-Explorer tool
https://yeswehack.github.io/Dom-Explo...

CT Episode 61: A Hacker on Wall Street - JR0ch17
https://www.criticalthinkingpodcast.i...

====== Timestamps ======
(00:00:00) Introduction
(00:01:44) Kevin Mizu - Background and Bring-a-bug
(00:15:09) DOMPurify
(00:29:04) Misconfigurations - Dangerous allow-lists
(00:39:09) Dangerous URI attributes configuration
(00:46:08) Bad usage
(00:59:55) DOMPurify Hooks: before, after, and upon SanitizeAttribute
(01:29:15) Node manipulation, nodeName namespace case confusion, & DOM Clobbering DOS
(01:36:51) Misc concepts for future research

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
How to Bypass DOMPurify in Bug Bounty with Kevin Mizu (Ep 111)

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

Interview with Ciarán Cotter (MonkeHack) Critical Lab Researcher and Full-time Hunter (Ep. 112)

Interview with Ciarán Cotter (MonkeHack) Critical Lab Researcher and Full-time Hunter (Ep. 112)

The Bug Hunter's Methodology - Application Analysis | Jason Haddix

The Bug Hunter's Methodology - Application Analysis | Jason Haddix

Finding criticals on well-tested targets - Victor “doomerhunter” Poucheret

Finding criticals on well-tested targets - Victor “doomerhunter” Poucheret

Johan Carlsson - 3 Month Check-in on Full-time Bug Bounty. (Ep. 69)

Johan Carlsson - 3 Month Check-in on Full-time Bug Bounty. (Ep. 69)

Limitations Are Just An Illusion: Brumens on Leveraging Advanced SSTI Exploitation to Achieve RCE

Limitations Are Just An Illusion: Brumens on Leveraging Advanced SSTI Exploitation to Achieve RCE

Простые и глупые советы по взлому (Эпизод 147)

Простые и глупые советы по взлому (Эпизод 147)

Alex Chapman: How to Be a High-Impact Hacker (Ep. 31)

Alex Chapman: How to Be a High-Impact Hacker (Ep. 31)

Объяснение контрабанды HTTP-запросов (с Джеймсом Кеттлом)

Объяснение контрабанды HTTP-запросов (с Джеймсом Кеттлом)

Tommy DeVoss: From Black Hat to Bug Bounty LEGEND (Ep. 164)

Tommy DeVoss: From Black Hat to Bug Bounty LEGEND (Ep. 164)

How to Crush Bug Bounties in the first 12 Months

How to Crush Bug Bounties in the first 12 Months

Single Page Application Hacking Playbook (Ep 114)

Single Page Application Hacking Playbook (Ep 114)

From 0 to a top bug bounty hunter - Johan Carlsson's journey to GitLab TOP1 on Hackerone

From 0 to a top bug bounty hunter - Johan Carlsson's journey to GitLab TOP1 on Hackerone

Как стать экспертом по XSS с помощью renniepak

Как стать экспертом по XSS с помощью renniepak

Это простое кодирование URL принесло мне 50 000 долларов в качестве вознаграждения

Это простое кодирование URL принесло мне 50 000 долларов в качестве вознаграждения

Bug Bounty Mental - Practical Tips for Staying Sharp & Motivated (Ep.77)

Bug Bounty Mental - Practical Tips for Staying Sharp & Motivated (Ep.77)

Creative Recon - Alternative Techniques (Ep. 109)

Creative Recon - Alternative Techniques (Ep. 109)

Как использовать DOM Invader в 2023 году

Как использовать DOM Invader в 2023 году

#NahamCon2023: Bugs Exposed: Unveiling Effective Strategies for Bug Bounty Programs | @ArchAngelDDay

#NahamCon2023: Bugs Exposed: Unveiling Effective Strategies for Bug Bounty Programs | @ArchAngelDDay

8 Fav Bugs of 2024, Farewell Joel, Hello Shift - Cursor of Hacking (Ep. 100)

8 Fav Bugs of 2024, Farewell Joel, Hello Shift - Cursor of Hacking (Ep. 100)

The secret to finding many Criticals - Alex Chapman

The secret to finding many Criticals - Alex Chapman

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]