Self XSS: we’re not so different, you and I

Self-XSS is a type of XSS defined by the fact that it only affects the currently authenticated user. Harmless at first sight, but with the right premises Self-XSS is just as dangerous as good old regular XSS.

This was presented at Security Fest 2017.

Speakers: Mathias Karlsson

About Mathias Karlsson

Fascinated by pushing web security to it’s limits, Mathias spends most of his time fiddling with it. He’s also an avid bug bounty hunter and occasional CTF player. Most of his work can be found on the Detectify Labs blog or his twitter, @avlidienbrunn.

