Learning Resources

Learning Resources

104 bookmarks
Newest
mXSS cheatsheet
mXSS cheatsheet
This cheatsheet is your one-stop shop for diving deep into the fascinating world of mXSS (mutations caused by browser quirks in HTML parsing). Forget sifting through the official 1500~ page spec – here’s a curated list of examples that showcase these unexpected behaviors.
·sonarsource.github.io·
mXSS cheatsheet
GMSGadget
GMSGadget
GMSGadget (Give Me a Script Gadget) is a collection of JavaScript gadgets that can be used to bypass XSS mitigations such as Content Security Policy (CSP) and HTML sanitizers like DOMPurify.
·gmsgadget.com·
GMSGadget