Skip to content

Commit

Permalink
Update README.md
Browse files Browse the repository at this point in the history
  • Loading branch information
xsscx authored Nov 8, 2023
1 parent 4cb995b commit e2bf6fd
Showing 1 changed file with 10 additions and 5 deletions.
15 changes: 10 additions & 5 deletions README.md
Original file line number Diff line number Diff line change
@@ -1,25 +1,30 @@
# XSS.Cx Public Repo

## Last Update: 4 APR 2023
## Last Update: 8 NOV 2023
- Added CVE-2022-26730 ICC Color Profile Sample PoC's
- Added CVE-2022-26730 Graphics Samples known to Crash many OS
- Added CVE Color Profile samples known to Crash many OS
- https://srd.cx/cve-2022-26730/
- https://srd.cx/cve-2023-32443/
- Added PoC's from my CVE's in DemoMaxICC Reference Implementation [https://github.com/InternationalColorConsortium/DemoIccMAX]
- Functionality in Skia, WebKit, Windows etc....
- The color() function and custom color profiles are part of the CSS Colors Module Level 4, which is still a draft and not widely supported.

## About
- Commodity Injection Signatures
- Scraped Fresh from the Internet since 2015
- Scraped Fresh from the Internet since 2015
- My PoC's from CVE's & Crashes

## Suggested Use
- Include with Burp Intruder or Custom Scripts
- Manual Injection Testing with Well-Known Signatures
- Automated Fuzzing with a Wide-Range with Malicious Inputs
- Abusing XNU, Windows or Linux
- Abusing XNU, Windows or Linux

### Recent Additions
- regex files to aid with apple security research device log analysis
- RBL focused on AD CDN's
- RBL focused on App Titles
- XNU Crash Helpers a la Apple SRD circa 2023
- XNU Crash Helpers for Apple Security Research Device circa 2023

### Pull Requests Welcome

Expand Down

0 comments on commit e2bf6fd

Please sign in to comment.