Videos

Published on November 8th, 2012 📆 | 3276 Views ⚑

0

DOM XSS on Google.com Page using DOMinatorPro Fuzzer


iSpeech


This video shows how to use DOMinatorPro fuzzer feature in order to analyze possible issues in JavaScript code. Blog post: http://blog.mindedsecurity.com/2012/11/dominatorpro-fuzzer-finds-dom-xss-on.html
We were able to find an HTML Injection via document.write on a third party script hosted on googleadservices.com which executes in the context of https://www.google.com/.


2012-11-08 12:08:59

source





Tagged with:



Comments are closed.