Breaking XSS Mitigations Via Script Gadgets

Breaking XSS Mitigations Via Script Gadgets

Black Hat via YouTube Direct link

Content Security Policies

9 of 16

9 of 16

Content Security Policies

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Breaking XSS Mitigations Via Script Gadgets

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 What is XSS
  3. 3 What are Script Gadgets
  4. 4 The Problem
  5. 5 HTML Sanitizers
  6. 6 Script Gadgets
  7. 7 Summary
  8. 8 Unsafeeval
  9. 9 Content Security Policies
  10. 10 Expression Process
  11. 11 Demo
  12. 12 Sebastian
  13. 13 Summary Conclusion
  14. 14 Recap
  15. 15 Main Conclusion
  16. 16 Questions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.