video thumbnail 6:03
Previous Bypass is now fixed in version 1.4.7 - XSS with AngularJS 0x2

2016-09-16

[public] 7.44K views, 186 likes, dislikes audio only

Testing the old bypass from version 1.0.8 on a new version 1.4.7 where it's fixed, to prepare for a different bypass.

mario heiderich @0x6d6172696f (https://cure53.de/)

gareth heyes @garethheyes

XSS without HTML: Client-Side Template Injection with AngularJS

http://blog.portswigger.net/2016/01/x...

An Abusive Relationship with AngularJS

https://vimeo.com/165951806

-=[ 🔴 Stuff I use ]=-

→ Microphone:* https://geni.us/ntg3b

→ Graphics tablet:* https://geni.us/wacom-intuos

→ Camera#1 for streaming:* https://geni.us/sony-camera

→ Lens for streaming:* https://geni.us/sony-lense

→ Connect Camera#1 to PC:* https://geni.us/cam-link

→ Keyboard:* https://geni.us/mech-keyboard

→ Old Microphone:* https://geni.us/mic-at2020usb

US Store Front:* https://www.amazon.com/shop/liveoverflow

-=[ ❤️ Support ]=-

→ per Video: https://www.patreon.com/join/liveoverflow

→ per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join

-=[ 🐕 Social ]=-

→ Twitter: https://twitter.com/LiveOverflow/

→ Website: https://liveoverflow.com/

→ Subreddit: https://www.reddit.com/r/LiveOverflow/

→ Facebook: https://www.facebook.com/LiveOverflow/

-=[ 📄 P.S. ]=-

All links with "*" are affiliate links.

LiveOverflow / Security Flag GmbH is part of the Amazon Affiliate Partner Programm.

#WebSecurity


New Sandbox Bypass in 1.4.7 - XSS with AngularJS 0x3 by LiveOverflow
/youtube/video/Hium4FVAR5A