My endeavours got my name here: Google Security Hall Of Fame
Which led me to create this: http://gallery.zolmeister.com/ (click the page)
That page is my XSS gallery. The images are the websites favicons, with size relative to their ranking. I have saved nearly every one of the XSS vulnerabilities I have found by hand, which is now over 200. Most of the sites are ones that were unhelpful or just pissed me off in general and so I took a few minutes to find an XSS vulnerability in them (I almost never report these vulnerabilities). Some however (the big icons) are ones where I started at the top of a list of most popular sites and moved my way down, collecting vulnerabilities along the way. It's pretty scary actually, knowing that even the most high profile sites are vulnerable.
You, Sir are a ninja. I'm a front end dev just starting to get into xss. http://bit.ly/RjaZk3
ReplyDelete