
Episode 128: New Research in Blind SSRF and Self-XSS, and How to Architect Source-code Review AI Bots
Critical Thinking - Bug Bounty Podcast
00:00
Exploring Web Security Vulnerabilities
This chapter examines the latest research on self-XSS and credentialist iframes, emphasizing their threat to web security through unauthorized access to authenticated sessions. It also discusses the implications of new browser features like 'fetch later' and their potential exploitation in attacks like CSRF. The conversation underscores the necessity for continued research and adaptation of security practices to counter these evolving threats.
Transcript
Play full episode