Critical Thinking - Bug Bounty Podcast cover image

Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu

Critical Thinking - Bug Bounty Podcast

00:00

Exploring Vulnerabilities in DOMPurify and JavaScript Evaluations

This chapter delves into the security vulnerabilities related to DOMPurify and the risk of JavaScript evaluations, highlighting past incidents like Flash-based XSS. The discussion emphasizes the importance of proper encoding and thorough testing in server-side processing to prevent developer errors that can lead to security flaws.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app