• Welcome to our new home!

    Please share any thoughts or issues here.


Any Web Devs here any good with CSP?

DamianTV

Member
Joined
Dec 7, 2007
Messages
20,667
Who is Good With Javascript?

Content Security Policy

If you are and know your stuff, even enough to get by, please PM me.

---

Edit:

http://www.webucate.me/iframe/

I slapped this together... Is anyone able to use Javascript to break out of the IFrame element? If you cant then I think I am fairly good as far as my intent... Allowing users to run their own Custom Scripts and not compromising other users safety! I think...
 
Last edited:
Ok, I found something that seems to work...

If you know anything about Javascript then click this link:

http://www.webucate.me/iframe/

So use the form to post ANY Javascript you want including DANGEROUS scripts, and see if you it is possible to make script calls to break out of the Iframe. Can you get access to the "Hack Target" div?
 
Back
Top