XSS in Chromium browsers can be triggered by a developer console trick

Connect
Hello! I'm Steve, an independent security researcher, and analyst from Scotland, UK.

I've had an avid interest in Computers, Technology and Security since my early teens. 20 years on, and, it's a whole lot more complicated...

I've assisted Governments, Individuals and Organizations throughout the world. Including; US DOJ, NHS UK, GOV UK.

I'll often reblog infosec-related articles that I find interesting. On the RiSec website, You'll also find a variety of write-ups, tutorials and much more!
Connect

If malicious actors can fool Chromium browser users into submitting a straightforward JavaScript command in the developer console, they can

Read more

Reflected XSS bugs in Canon Medical ’s Vitrea View could expose patient info

Connect
Hello! I'm Steve, an independent security researcher, and analyst from Scotland, UK.

I've had an avid interest in Computers, Technology and Security since my early teens. 20 years on, and, it's a whole lot more complicated...

I've assisted Governments, Individuals and Organizations throughout the world. Including; US DOJ, NHS UK, GOV UK.

I'll often reblog infosec-related articles that I find interesting. On the RiSec website, You'll also find a variety of write-ups, tutorials and much more!
Connect

Trustwave researchers discovered two XSS flaws in Canon Medical’s Vitrea View tool that could expose patient information. During a penetration

Read more

WordPress Plugin Testimonial Slider and Showcase 2.2.6 Stored XSS PoC

Just your average information security researcher from Delaware US.

A Stored XSS (Cross-Site-Scripting) vulnerability was discovered in the WordPress Plugin – Testimonial Slider and Showcase affecting version 2.2.6. At

Read more

ThingsBoard 3.3.1 XSS – Stored Cross-Site Scripting (XSS)

Connect
Hello! I'm Steve, an independent security researcher, and analyst from Scotland, UK.

I've had an avid interest in Computers, Technology and Security since my early teens. 20 years on, and, it's a whole lot more complicated...

I've assisted Governments, Individuals and Organizations throughout the world. Including; US DOJ, NHS UK, GOV UK.

I'll often reblog infosec-related articles that I find interesting. On the RiSec website, You'll also find a variety of write-ups, tutorials and much more!
Connect

A Stored XSS (Cross-Site Scripting) vulnerability was discovered in ThingsBoard 3.3.1 by security researchers Steffen Langenfeld & Sebastian Biehler. Suggest

Read more

Preventing Cross-site Scripting (XSS) Web Security

Just your average information security researcher from Delaware US.

Cross-site scripting is one of the most common and popular web attacks. XSS is a command injection of the client

Read more

Mailhog 1.0.1 Cross-Site Scripting XSS

Just your average information security researcher from Delaware US.

Malicious users have the ability to send API requests to localhost and this request will be executed without any additional

Read more

nopCommerce Store 4.30 – ‘name’ Stored Cross-Site Scripting

Connect
Hello! I'm Steve, an independent security researcher, and analyst from Scotland, UK.

I've had an avid interest in Computers, Technology and Security since my early teens. 20 years on, and, it's a whole lot more complicated...

I've assisted Governments, Individuals and Organizations throughout the world. Including; US DOJ, NHS UK, GOV UK.

I'll often reblog infosec-related articles that I find interesting. On the RiSec website, You'll also find a variety of write-ups, tutorials and much more!
Connect

CVE: N/A Platform: Multiple Date: 2020-11-24

Read more