What is Detectify?

Cross Site Scripting

What’s your go-to bug class? Is it XSS? One could say cross-site scripting is a favourite among our researchers. Check it out:

XSS using quirky implementations of ACME http-01

Auditor Cross Site Scripting Frans Rosén HTTPS Everywhere Linus Särud validation
Cross Site Scripting Lastpass Mathias Karlsson XSS

How I made LastPass give me all your passwords

bug bounty Bugcrowd Cross Site Scripting Frans Rosén XSS

Frans Rosén’s Bugcrowd Guest Blog: Using a Braun Shaver to Bypass XSS Audit and WAF

Get research and tips from Detectify security experts and the Crowdsource hacker community Subscribe to the Detectify Monthly Round-up
Chrome Cross Site Scripting Safari Twins of Ten XSS

Solutions to the Twins of Ten XSS Challenge

Cross Site Scripting Google Turkey XSS

Google XSS Turkey