
Youssef Sammouda
Expert in finding and exploiting client-side bugs and postMessage vulnerabilities.
Best podcasts with Youssef Sammouda
Ranked by the Snipd community

Feb 15, 2024 • 1h 55min
Episode 58: Youssef Sammouda - Client-Side & ATO War Stories
Youssef Sammouda shares client-side bug exploits like race conditions, hash change events, and scroll to text fragments. Techniques for exploiting post messages, utilizing Redjax bombing, and manipulating URLs are discussed. The importance of detailed bug reports, ID generation vulnerabilities, and browser security weaknesses are highlighted. Advanced topics include cross-origin communication, mobile OAuth vulnerabilities, and HTTP response manipulation for unique attack scenarios.