Finding client-side prototype pollution with DOM Invader
portswigger.net | blog | #burp-suite | #xss | #client-side-security | #prototype-pollution | #dom-invader | #dom-xss
Summary
DOM Invader has been upgraded to detect client-side prototype pollution (CSPP) in a couple of clicks. The post explains pollution sources, gadgets, and how the tool finds and exploits them.
- Published
- Collected
Skip to content