1. CORS Security: Beyond Basic Configuration blog | 2025-11-21 00:00 | aikido.dev | original ↗ | #appsec | #browser-security | #web-security
2. Security Risks of Setting Access Control Allow Origin: * research | 2025-03-17 01:38 | projectblack.io | original ↗ | #web-security | #data-exfiltration | #cors
3. Introducing the URL validation bypass cheat sheet research | 2024-09-05 12:36 | portswigger.net | original ↗ | #burp-suite | #ssrf | #open-redirect
4. Bypassing browser tracking protection for CORS misconfiguration abuse research | 2024-01-25 13:37 | swarm.ptsecurity.com | original ↗ | #browser-security | #web-security | #cors
5. Secure your Apollo GraphQL server with Semgrep blog | 2023-08-29 12:00 | blog.trailofbits.com | original ↗ | #graphql | #csrf | #static-analysis
6. Exploiting CORS misconfigurations for Bitcoins and bounties research | 2022-08-16 09:24 | portswigger.net | original ↗ | #bug-bounty | #web-security | #misconfiguration
7. How to Catch Broken Access Control Security Vulnerabilities in Code Review Part 2 blog | 2022-01-05 00:00 | hackerone.com | original ↗ | #access-control | #code-review | #privilege-escalation
8. Bypassing AngularJS bind HTML research | 2020-09-08 12:23 | portswigger.net | original ↗ | #xss | #portswigger | #cors
9. Is CORS Becoming Obsolete? blog | 2017-09-06 00:00 | bishopfox.com | original ↗ | #browser-security | #web-security | #w3c