Login
From:
Virtue Security
(Uncensored)
subscribe
Tale of a Wormable Twitter XSS - Virtue Security
https://www.virtuesecurity.com/tale-of-a-wormable-twitter-xss/
links
backlinks
Tagged with:
twitter
xss
application
csp
content-security-policy
csp bypass
xss worm
Roast topics
Find topics
Find it!
This is a tale of how we found a wormable XSS on Twitter, and how we managed to fully bypass its CSP policy.