writeups.xyz writeups.xyz / Daniel Thatcher (@_Danielthatcher)

Title Vulnerabilities Programs Authors
Tricks for Reliable Split-Second DNS Rebinding in Chrome and Safari
We Hacked Ourselves With DNS Rebinding
Detecting Server-Side Prototype Pollution
In GUID We Trust
Practical HTTP Header Smuggling: Sneaking Past Reverse Proxies to Attack AWS and Beyond
Exploiting a "Useless" Cookie-Based XSS and Making it Useful
Obtaining XSS Using Moodle Features and Minor Bugs