Note that XSS is still the top 1 vulnerability
Ultimately it can contribute to many, as -
SSRF, cache poisoning, malicious js or Web workers injection, http2 weaknesses etc
Hope to hear some thoughts if there are areas more rewarding than others
Hi All,
As bug bounties get more and more attention how valuable for a smart hunter would be the following domains
en-gb.uk
webstatic.co.uk
recaptcha.uk
For instance - crafting XSS, downgrading the SRI policies, cookie smuggling etc, perhaps someone can suggest other possible ways to...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.