
portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
Preview meta tags from the portswigger.net website.
Linked Hostnames
8- 65 links toportswigger.net
- 5 links toinfosec.exchange
- 3 links totwitter.com
- 2 links togithub.com
- 1 link toapi.whatsapp.com
- 1 link toforum.portswigger.net
- 1 link toreddit.com
- 1 link towww.linkedin.com
Thumbnail

Search Engine Appearance
https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
Stealing passwords from infosec Mastodon - without bypassing CSP
The story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
Bing
Stealing passwords from infosec Mastodon - without bypassing CSP
https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
The story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
DuckDuckGo

Stealing passwords from infosec Mastodon - without bypassing CSP
The story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
General Meta Tags
6- titleStealing passwords from infosec Mastodon - without bypassing CSP | PortSwigger Research
- charsetutf-8
- X-UA-CompatibleIE=edge
- viewportwidth=device-width, initial-scale=1
- descriptionThe story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
Open Graph Meta Tags
6- og:titleStealing passwords from infosec Mastodon - without bypassing CSP
- og:descriptionThe story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
- og:typearticle
- og:urlhttps://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
- og:imagehttps://portswigger.net/cms/images/40/32/b07e-twittercard-mastodon_twitter.png
Twitter Meta Tags
4- twitter:cardsummary_large_image
- twitter:titleStealing passwords from infosec Mastodon - without bypassing CSP
- twitter:descriptionThe story of how I could steal credentials on Infosec Mastodon with a HTML injection vulnerability, without needing to bypass CSP. Everybody on our Twitter feed seemed to be jumping ship to the infose
- twitter:imagehttps://portswigger.net/cms/images/40/32/b07e-twittercard-mastodon_twitter.png
Link Tags
7- alternate/research/rss
- apple-touch-icon/content/images/logos/apple-touch-icon.png
- canonicalhttps://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
- icon/content/images/logos/favicon.ico
- preload/content/fonts/ps-icons-small/ps-icons-small.woff?td2uot
Emails
1- ?subject=Stealing+passwords+from+infosec+Mastodon+-+without+bypassing+CSP&body=Stealing+passwords+from+infosec+Mastodon+-+without+bypassing+CSP%0A%0AThe+story+of+how+I+could+steal+credentials+on+Infosec+Mastodon+with+a+HTML+injection+vulnerability%2C+without+needing+to+bypass+CSP.+Everybody+on+our+Twitter+feed+seemed+to+be+jumping+ship+to+the+infose%0A%0Ahttps://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
Links
79- https://api.whatsapp.com/send?text=https%3A%2F%2Fportswigger.net%2Fresearch%2Fstealing-passwords-from-infosec-mastodon-without-bypassing-csp
- https://forum.portswigger.net
- https://github.com/glitch-soc/mastodon
- https://github.com/glitch-soc/mastodon/blob/main/lib/sanitize_ext/sanitize_config.rb
- https://infosec.exchange