Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

AngularJS CSP bypass in 56 characters

Summary

Gareth Heyes chronicles trimming an AngularJS CSP bypass payload from 63 to 56 characters by exploiting the path property and filter syntax, evading the framework's window detection.
Published
Collected

original ↗

Related coverage

back