DOOM — Chaining CSPT, Open Redirect, and XSS
By Iliya Dindar
A walkthrough of the DOOM box. Three "small" bugs that mean nothing on their own, but composed together hand you a one-click XSS that runs on the victim's origin with their session in
blog.iliyadindar.site7 min read