neraliu / tainted-phantomjs

Tainted PhantomJS
BSD 3-Clause "New" or "Revised" License
53 stars 12 forks source link

Fuzzing support #35

Open eoftedal opened 9 years ago

eoftedal commented 9 years ago

https://dominator.mindedsecurity.com/sharedto/ComparingDOMXSSToolOnRealWorldBug.pdf

"TPJS does not have any fuzzing functionality. Even by introducing the tool to the correct test case, TPJS was not able to find the issue because it lost the tainting flow somewhere."