Topic · 2 articles
svg
Intermediate level
2With account€1200
Stored XSS €1200 — sanitizer bypass via SVG href javascript: with entity encoding
Walkthrough of a real €1200 report: stored XSS in POE bypassing a sanitizer fix via SVG with href=`javascript:` and HTML entity encoding over the filtered characters.
12 minxssstored-xsssvg
Read article
Free
Stored XSS via SVG with href javascript: in chat — reclassification of Self-XSS
An SVG payload uploaded as an attachment. Filter bypassed. Rendered inline in the main context. Any chat participant is exposed on click.
11 minxssstored-xsssvg
Read article
Practice svg with real labs
Apply the techniques in safe environments based on real bug bounty reports.
- hunters training
- 712
- labs from real reports
- 55
- completions
- 1,206
- in bounties practiced
- $213,970
hunters training
labs from real reports
completions
in bounties practiced
46 flags captured this week·Real reports from HackerOne · Bugcrowd · Intigriti·No commitment·Free Academy
BBLabs · bug bounty training
Stop reading about bugs and start hunting them
Create your free account and practice on labs based on real reports that paid out thousands of euros. The Academy is free forever.
No card · free Academy · cancel anytime