Bypassing CSP via URL Parser Confusions : XSS on Netlify’s Image CDN |
|
|
|
Exploiting Static Site Generators: When Static Is Not Actually Static |
|
|
|
Exploiting Web3’s Hidden Attack Surface: Universal XSS on Netlify’s Next.js Library |
|
|
|
Subdomain Takeover worth 200$ |
|
|
|