Thomas Orlita
Making and breaking softwarePosts
Projects
Web security
- 5 different vulnerabilities in Google’s Threadit
- Clickjacking DOM XSS on Google.org
- XSSing Google employees: blind XSS on googleplex.com
- Inserting arbitrary files into anyone’s Google Earth Studio projects archive
- Bypassing Firebase authorization to create custom app.goo.gl subdomains
- view all posts ››