Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Finding client-side prototype pollution with DOM Invader

Summary

DOM Invader has been upgraded to detect client-side prototype pollution (CSPP) in a couple of clicks. The post explains pollution sources, gadgets, and how the tool finds and exploits them.
Published
Collected

original ↗

Related coverage

back