4.2.12. 参考链接
4.2.12.1. wiki
- AwesomeXSS
- w3c
- dom xss wiki
- content-security-policy.com
- markdwon xss
- xss cheat sheet
- html5 security cheatsheet
- http security headers
- XSSChallengeWiki
4.2.12.2. Challenges
4.2.12.3. CSS
4.2.12.4. 同源策略
4.2.12.5. bypass
- 666 lines of xss payload
- xss auditor bypass
- xss auditor bypass writeup
- bypassing csp using polyglot jpegs
- bypass xss filters using javascript global variables