dead && end
-
React Native Development Server Remote OS Command Injection and Remote File Disclosure
7 min read -
May 12, 2016
-
Android Anti-Hooking Techniques in Java
8 min read -
Dec 23, 2015
-
Puffin Browser RCE and Remote File Disclosure
8 min read -
Dec 8, 2015
-
Abusing UIWebView baseURL settings in the Cordova ChildBrowser Plug-in
5 min read -
Apr 3, 2015
-
Javelin Browser RCE and Password Manager Information Disclosure
5 min read -
Apr 2, 2015
-
Cordova LaunchMyApp Plug-in Remote JavaScript Injection
4 min read -
Dec 17, 2014
-
Exploitation of Open URL AJAX Requests and DOM-based XSS using CORS
4 min read -
Dec 9, 2014
-
Understanding Fragment Injection
4 min read -
Jun 18, 2014
-
Cordova InAppBrowser Remote Privilege Escalation
5 min read -
Apr 14, 2014
-
Why cross-domain policy files are occasionally interesting to look at.
6 min read -
Jul 23, 2013