subdomain-origin

1 article
sort: new top best
clear filter
0 6/10

A researcher exploited CORS misconfiguration combined with XSS on a subdomain to exfiltrate sensitive user data (email, age, gender, DOB) from a main domain endpoint. By crafting an XSS payload that sends a credentialed XMLHttpRequest to the misconfigured endpoint and exfiltrates the response, the attacker could steal protected user information.

Noman Shaikh Netgear Bugcrowd James Kettle Daniel Bakker Kaushal Parikh
bugbaba.blogspot.com · devanshbatham/Awesome-Bugbounty-Writeups · 6 hours ago · details