Critical Thinking - Bug Bounty Podcast cover image

Critical Thinking - Bug Bounty Podcast

Episode 73: Sandboxed IFrames and WAF Bypasses

May 30, 2024
Discussion on WAF bypass tools, sandboxed iframes, programs redacting bug reports, optional chaining operator in JS, Chrome cache exploit, hacker team shoutout, and innovative iframe hijacking techniques.
31:13

Podcast summary created with Snipd AI

Quick takeaways

  • Authenticating scanning in Nuclei v3.2 improves fuzzing capabilities.
  • Exploiting frame hijacking exposes browser security threats.

Deep dives

New Features in Nuclei 3.2: Authenticated Scanning and Advanced Fuzzing Support

Nuclei version 3.2 introduces significant updates including authenticated scanning and enhanced fuzzing capabilities. Authenticated scanning now allows for automatic login using existing templates, eliminating manual cookie addition. Additionally, advanced fuzzing support extends to headers, cookies, and specific data parts like JSON and XML, enhancing scanning coverage.

Remember Everything You Learn from Podcasts

Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.
App store bannerPlay store banner