Critical Thinking - Bug Bounty Podcast cover image

Episode 26: Client-side Quirks & Browser Hacks

Critical Thinking - Bug Bounty Podcast

00:00

How to Get XSS From a File

Mozilla's MDM allows you to hijack modules by calling dot then on them. This can cause the module to behave differently when it's imported dynamically, than what it's imported static. Mozilla has a warning about this in their web docs that says don't export a function called then from a module. And so yeah, this is a cool tool for getting in there.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app