Fuzzing XSS Sanitizers for Fun and Profit | Tom Anthony
Vložit
- čas přidán 13. 09. 2024
- In 1998 Tom was arrested for hacking, and was told he was looking at over 270 years in prison. Time for a career change! Tom went on to a life as an academic, earning a PhD in Artificial Intelligence, before starting a career as an SEO consultant (you think telling people you are a hacker is bad -- try telling them you do SEO!). Although nowadays his day job is as CTO of an SEO SaaS business, Tom still has 'the itch.' This took him from being the first person to ever be awarded a bounty for hacking Google's search algorithm, to hitting the news when he tried to join Boris Johnson's cabinet meeting on Zoom, and discovering a few fun bugs along the way.
This H@cktivitycon talk was given at our H1-702 Live Hacking Event in Las Vegas!
Follow Tom: / tomanthonyseo
▼ Keep up with us ▼
◇ Twitter → / hacker0x01
◇ Twitch → / hackeronetv
◇ Instagram → www.instagram....
loved it! thank you for great talk
Tom is the man!
How do you create a local version of the sanitizer for fuzzing ?
as a fan of hunting for XSS, this is pretty cool
Thank you Tom
hi ! The following string I generated generated false positives. It is valid, but fuzz does not respond. How should I solve it? Thank you so much. ""
this is pure gold :)
okay, maybe i need to buy a bath for fuzz xdxdxd
Just wow!
Great Content ...
Very cool
ᑭᖇOᗰOᔕᗰ