Critical Thinking - Bug Bounty Podcast cover image

Episode 111: How to Bypass DOMPurify in Bug Bounty with Kevin Mizu

Critical Thinking - Bug Bounty Podcast

CHAPTER

Exploring Vulnerabilities in DOMPurify and JavaScript Evaluations

This chapter delves into the security vulnerabilities related to DOMPurify and the risk of JavaScript evaluations, highlighting past incidents like Flash-based XSS. The discussion emphasizes the importance of proper encoding and thorough testing in server-side processing to prevent developer errors that can lead to security flaws.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner