ferrazzosito / unibz-infosec-frontend

0 stars 1 forks source link

Start writing a doc for what we can do as penetration testing #14

Open francescomazzini opened 1 year ago

SimoneFerraris commented 1 year ago

XSS

https://stackoverflow.com/questions/33644499/what-does-it-mean-when-they-say-react-is-xss-protected

https://medium.com/@jurouhlar/quick-devnotes-xss-vulnerabilities-in-react-45d9f683a7d2

SimoneFerraris commented 1 year ago

Various

https://www.thirdrocktechkno.com/blog/react-security-vulnerabilities/

SimoneFerraris commented 1 year ago

zip slip

https://security.snyk.io/research/zip-slip-vulnerability

SimoneFerraris commented 1 year ago

CSRF

https://owasp.org/www-community/attacks/csrf

SimoneFerraris commented 1 year ago

for xss remote requests https://webhook.site