html-entities

1 article
sort: new top best
clear filter
0 5/10

A bug bounty hunter demonstrates chaining self-XSS to blind XSS in an admin panel via HTML entity encoding bypass, then discovers a reflected XSS on an undiscovered subdomain using KNOXSS payload analysis, earning $700 total. The writeup focuses on practical payload techniques and methodology rather than detailed technical analysis.

KNOXSS Sublist3r Skeletorkeys Friendly
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details