Stefano Di Paola

Stefano Di Paola

@WisecWisec

Founder & CTO of MindedSecurity. (Web) Application Security consultant, researcher and enthusiast. I love lateral thinking.

Florence · http://blog.mindedsecurity.com

Tweets

RT : First (?) MentalJS bypass: (function a() /'/+alert(location)+/'/)() // cc: //nice!

When reviewing obfuscated JS looking for DOM and you feel like it's a tough fight is your jock cup

indeed the paper reminded me some already viewed code.. thats the one we reccomend together w/ x-frame header :)

I feel so annoyed when I find research paper and I can't find the year of publication!Did I already read it?is it old?

RT : RT : Your retweets are bad and you should feel bad! < dear security "researchers", this :D

ditto!-even if smtimes happens 2 me as well.I'd also add:"your references are bad and you should feel bad""researchers"

Found a stored XSS in a Google application with: "));} catch(e) { alert(1) }// It's a bug in a swf exported function via ExternalInterface.

Det ser ut til at det tar en stund å laste.

Twitter kan være overbelastet eller under en midlertidlig stans. Prøv igjen eller besøk Twitter Status for mer informasjon.