Critical Thinking - Bug Bounty Podcast cover image

Episode 61: A Hacker on Wall Street - JR0ch17

Critical Thinking - Bug Bounty Podcast

00:00

Exploring Vulnerabilities in Dom Purify and Path Traversal in OAuth Flow

The chapter delves into the speaker's testing of an app, uncovering a vulnerability in Dom Purify and exploiting a path traversal in the OAuth flow. It discusses manipulating refer policy using meta tags and HTML injection to change it to an unsafe URL, successfully setting the refer policy despite challenges with Chrome stripping out the meta tag. The conversation also touches on active security vulnerabilities, a Chrome bug in Dom Purify, and insights into exploiting vulnerabilities and different career paths in cybersecurity.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app