@vfsglobalcare Given me and my kid had the same application id, I have a strong suspicion there mightโve been a mix up on vfsโs side. Would be great if someone can investigate that for me
@vfsglobalcare hey! My kid and I had the same application id and I already received a decision on my application, but heโs not and itโs been almost 2 weeks since my decision was made. Could you help me figuring out whatโs the status of his application?
@Rhynorater@CodeByNZ@CaidoIO Can it parse openapi? If it has functionality similar to postman in regards to parsing the spec/organizing requests, thatโs a game changer
I want to say huge thanks to @Jhaddix for sharing your stories, techniques, and experience! Also, I want to say thanks to @infosec_au. And of course thanks @pdiscoveryio ๐๐ป https://t.co/gVge3LUnDz
@WebSecAcademy hey guys. tried to solve the XSS in html attributes task with the following payload: "+autofocus+onfocus%3Dalert('xss')%3B%2F%2F"
the alert is being executed at least in firefox 72.0.1 and chromium (79.0.3945.79). Am i doing something wrong?
@WebSecAcademy The name is "Reflected XSS into attribute with angle brackets HTML-encoded"
So yes, the status is not changing if the alert is executed with the aforementioned payload. However, later i tried a payload from your own solution (the one with onmouseover) and the status changed
About the "security issue" on #VLC : VLC is not vulnerable.
tl;dr: the issue is in a 3rd party library, called libebml, which was fixed more than 16 months ago.
VLC since version 3.0.3 has the correct version shipped, and @MITREcorp did not even check their claim.
Thread:
Today I've gone crazy. Proudly present to the world - web goose! ๐
Powerful asistent with #bugbounty programs and #pentest . He knows #web at the level of professionals.
RT for luck with BB๐