Prototype Poisoning and Unicode Case Mapping Collision - Solution to March '24 Challenge

Опубликовано: 27 Март 2024
на канале: Intigriti
1,478
41

🏆 The official writeup for the March '24 Challenge, which involves XSS, prototype poisoning and a Unicode case mapping collision (client-side overflow). We received 49 valid submissions (and 6 awesome writeups). In this video, we'll breakdown the solution 🧠

Full blog/writeup: https://bugology.intigriti.io/intigri...
Follow m0z:   / loosesecurity  
Solve the challenge: https://challenge-0324.intigriti.io

🧑💻 Sign up and start hacking right now - https://go.intigriti.com/register

🐱💻 Can't get enough of these challenges? - https://blog.intigriti.com/hackademy/...

👾 Join our Discord - https://go.intigriti.com/discord

🎙️ This show is hosted by   / _cryptocat   ( ‪@_CryptoCat‬ ) &   / intigriti  

👕 Do you want some Intigriti Swag? Check out https://swag.intigriti.com

00:00 Intro
00:31 Code review
01:47 Debug functionality
02:28 XSS
03:40 Prototype poisoning
07:22 Unicode case mapping collision
10:09 Bonus: interesting solutions
11:07 Conclusion