AngularJS CSP bypass in 56 characters
portswigger.net | research | #browser-security | #xss | #portswigger | #payload | #csp-bypass | #angularjs | #shortest-vector
Summary
Gareth Heyes chronicles trimming an AngularJS CSP bypass payload from 63 to 56 characters by exploiting the path property and filter syntax, evading the framework's window detection.
- Published
- Collected
Skip to content