Soroush Dalili

  • Home
  • Blog
  • Bug Bounty Invites
  • Advisories
  • Contact
October 7, 2013

Catch-up on Flash XSS exploitation – bypassing the guardians! – Part 1

September 28, 2013

Simple Security Tip: window.location = window.location.pathname can cause Open-Redirect issue!

April 26, 2013

Microsoft XMLDOM in IE can divulge information of local drive/network in error messages – XXE

March 19, 2013

IE/Firefox Redirection Issue – FB Oauth2 Bypass – BugCrowd

November 28, 2012

File in the hole! – HackPra slides

November 12, 2012

XSS by uploading/including a SWF file

October 18, 2012

Don’t trust a string based on TryParse or IsNumeric result! (.Net/VBScript)

August 14, 2012

IE9 Self-XSS Blackbox Protection bypass

June 30, 2012

Microsoft IIS tilde character “~” Vulnerability/Feature – Short File/Folder Name Disclosure

June 20, 2012

Browsers Anti-XSS methods in ASP (classic) have been defeated!

Prev1…345678Next