Nytro Posted July 16, 2014 Report Posted July 16, 2014 Advanced XSSNicolas GolubovicToday's menuStarter: reboiled XSSCourse: spicy blacklists & filtersCourse: sweet content sniffingCourse: salty defensesa. httpOnly cookiesb. Content Security Policy (CSP)c. XSS AuditorDessert: tips and tricksa. DOM clobberingCookies?Download: https://www.owasp.org/images/a/ae/Advanced_XSS.pdf Quote