X-XSS-Nightmare
Slides
[ja]X-XSS-Nightmare: 1; mode=attack ~XSSフィルターを利用したXSS攻撃~
[en]X-XSS-Nightmare: 1; mode=attack XSS Attacks Exploiting XSS Filter
Attacks
</st
y
le>
<script src="//example.co
.
jp"></script>
<link rel="stylesheet" href="
.
./test.css">
Some attacks are not fixed yet..
..
XSS Filter Bypasses
Not fixed yet..