Portswigger Lab: DOM XSS in document.write sink using source location.search

  Рет қаралды 369

Woman in WhiteHat

Woman in WhiteHat

Күн бұрын

Пікірлер: 5
@brandedmunda6281
@brandedmunda6281 5 ай бұрын
why svg tag use used not any other like span etc
@WomanInWhiteHat
@WomanInWhiteHat 5 ай бұрын
First let me explain you what is The tag is basically for creating scalable vector graphics and a svg file can be considered an image format file. Although it's bit different from jpeg or png files... So svg tag will support events like onload, onclick, etc., (you can refer the video and see in the payload I have used the onload event) and this will inturn trigger the JavaScript code execution. In the payload onload=alert(1), the onload event of the SVG element is used to execute the alert(1) JavaScript code when the SVG loads. The tag, on the other hand, doesn't support events like onload. I hope this helps!! Let me know if you need further clarification.
@brandedmunda6281
@brandedmunda6281 5 ай бұрын
@@WomanInWhiteHat best explanation big fan mam
@electrowizard2658
@electrowizard2658 6 ай бұрын
Hwy u got discord or something im into cyber sec self studied for years would love to connect u btw great video
@WomanInWhiteHat
@WomanInWhiteHat 5 ай бұрын
Hey, glad to know. But unfortunately I don't.
When mom gets home, but you're in rollerblades.
00:40
Daniel LaBelle
Рет қаралды 125 МЛН
CAN YOU DO THIS ?
00:23
STORROR
Рет қаралды 46 МЛН
Wait for the last one 🤣🤣 #shorts #minecraft
00:28
Cosmo Guy
Рет қаралды 22 МЛН
How to Calculate CVSS Score | Metrics Explained
13:16
Woman in WhiteHat
Рет қаралды 289
Portswigger Lab : OS Command Injection, simple case | Solution
4:45
How to get in Cybersecurity as a fresher in 2024
11:21
Woman in WhiteHat
Рет қаралды 1,5 М.
Decentrix AI - Think ideas, not code
4:48
Shantanu
Рет қаралды 25
When mom gets home, but you're in rollerblades.
00:40
Daniel LaBelle
Рет қаралды 125 МЛН