Critical Thinking - Bug Bounty Podcast cover image

Episode 61: A Hacker on Wall Street - JR0ch17

Critical Thinking - Bug Bounty Podcast

CHAPTER

Exploring Vulnerabilities in Dom Purify and Path Traversal in OAuth Flow

The chapter delves into the speaker's testing of an app, uncovering a vulnerability in Dom Purify and exploiting a path traversal in the OAuth flow. It discusses manipulating refer policy using meta tags and HTML injection to change it to an unsafe URL, successfully setting the refer policy despite challenges with Chrome stripping out the meta tag. The conversation also touches on active security vulnerabilities, a Chrome bug in Dom Purify, and insights into exploiting vulnerabilities and different career paths in cybersecurity.

00:00
Transcript
Play full episode

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner