Tag: DOM-based XSS

  • FrogPost: postMessage Security Testing Tool

    FrogPost: postMessage Security Testing Tool

    FrogPost is a powerful Chrome extension for testing and analyzing the security of postMessage communications between iframes. It helps developers and security professionals identify vulnerabilities in message-handling implementations. Key Features Live monitor of cross-origin postMessage traffic Automatic detection and analysis of message handlers Static and runtime analysis for DOM-based vulnerabilities Identification of missing origin checks and unsafe sinks Targeted…