Critical Thinking - Bug Bounty Podcast cover image

Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu

Critical Thinking - Bug Bounty Podcast

00:00

Exploiting DOMPurify Vulnerabilities

This chapter explores the intricacies of HTML sanitization through DOMPurify, highlighting methods to exploit potential vulnerabilities in PDF generation. The discussion includes strategies for fingerprinting DOMPurify and identifies misconfigurations that could lead to XSS attacks. It emphasizes the importance of carefully managing configuration settings to balance security with development flexibility.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app