Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the complete journey of discovering a Cross-Site Scripting (XSS) vulnerability in Meta's repositories through systematic manual code analysis in this 25-minute conference talk from Ekoparty Security Conference. Learn practical code review methodologies that can effectively uncover security flaws in large-scale codebases as security researcher Ileana Maricel Barrionuevo demonstrates the various approaches used during her vulnerability research process. Follow the detailed discovery workflow from initial code examination through vulnerability validation, gaining valuable insights into effective bug hunting techniques. Understand how manual code analysis can reveal critical security issues even in major technology companies' codebases, with practical demonstrations of research methodologies that can be applied to your own security testing efforts. The presentation provides actionable insights for bug hunters, security researchers, and developers interested in improving their code review skills and vulnerability discovery techniques.
Syllabus
When giants fall: XSS in Meta through code review - Ileana Maricel Barrionuevo
Taught by
Ekoparty Security Conference