What is the most reliable way of XSSing a hidden field in modern browsers? "style=x:expression(alert(1)) & onforminput works in old browsers
-
-
@avlidienbrunn Older versions. What is reliable now? Any idea(s) ...Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.