
Episode 141: Hacking the Pod - Google Docs 0-day & React CreateElement Exploits with Nick Copi (7urb0)
Critical Thinking - Bug Bounty Podcast
00:00
Wormable XSS and Electron escalation
Nick outlines a React createElement sync XSS that persisted into an Electron desktop client, allowing background windows and IPC abuse for screenshots and remote JS execution.
Transcript
Play full episode