@ptracesecurity Wow! ? Check out this awesome bug chain: postMessage, JSONP, WAF bypass, DOM-based XSS, CORS, CSRF… ? #Pentesting #CyberSecurity #Infosec https://t.co/EeTTRz2Bc0 https://t.co/qn9JnHkvbC