Skip to content
52

awesome-browser-exploit

awesome list of browser exploitation tutorials

2.3k stars297 forks75 entriesLast push Sep 18, 2023 (3 years ago)License GPL-3.0

This page lists names, links and short descriptions. The original list on GitHub is the source and belongs to its authors.

Basic

v8 github mirror(docs within)

[github]

In 4 lists

on-stack replacement in v8

[article] // multiple articles can be found within

A tour of V8: Garbage Collection

[article]

A tour of V8: object representation

[article]

v8 fast properties

[article]

learning v8

[github]

Intro to Chrome’s V8 from an exploit development angle

[article]

Introduction to TurboFan

[article]

V8 / Chrome Architecture Reading List - For Vulnerability Researchers

Writeup and Exploit Tech

Getting into Browser Exploitation - Recreating Safari Wekit Exploit

[video]

Mobile Pwn2Own Autumn 2013 - Chrome on Android - Exploit Writeup

[article]

Exploiting a V8 OOB write

[article]

Pointer Compression in V8

[article]

Exploiting the Math.expm1 typing bug in V8

[article]

Exploiting an Accidentally Discovered V8 RCE

Escaping the Chrome Sandbox via an IndexedDB Race Condition

[article]

Exploiting CVE-2020-0041 - Part 1: Escaping the Chrome Sandbox

[article]

Cleanly Escaping the Chrome Sandbox

[article]

Escaping the Chrome Sandbox with RIDL

[article]

You Won't Believe what this One Line Change Did to the Chrome Sandbox

[article]

Basic

Microsoft Edge MemGC Internals

[slides]

The ECMA and the Chakra

[slides]

Writeup and Exploit Tech

2012 - Memory Corruption Exploitation In Internet Explorer

[slides]

2013 - IE 0day Analysis And Exploit

[slides]

2014 - Write Once, Pwn Anywhere

[slides]

2014 - The Art of Leaks: The Return of Heap Feng Shui

[slides]

2014 - IE 11 0day & Windows 8.1 Exploit

[slides]

2014 - IE11 Sandbox Escapes Presentation

[slides]

2015 - Spartan 0day & Exploit

[slides]

2015 - 浏览器漏洞攻防对抗的艺术 Art of browser Vulnerability attack and defense (Chinese)

[slides]

2016 - Look Mom, I don't use Shellcode

[slides]

2016 - Windows 10 x64 edge 0day and exploit

[slides]

2017 - 1-Day Browser & Kernel Exploitation

[slides]

2017 - The Secret of ChakraCore: 10 Ways to Go Beyond the Edge

[slides]

2017 - From Out of Memory to Remote Code Executio

[slides]

2018 - Edge Inline Segment Use After Free (Chinese)

Mitigation

2017 - CROSS THE WALL-BYPASS ALL MODERN MITIGATIONS OF MICROSOFT EDGE

[slides]

Browser security mitigations against memory corruption vulnerabilities

[references]

Browsers and app specific security mitigation (Russian) part 1

[article]

Browsers and app specific security mitigation (Russian) part 2

[article]

Browsers and app specific security mitigation (Russian) part 3

[article]

Basic

JSC loves ES6

[article] // multiple articles can be found within

JavaScriptCore, the WebKit JS implementation

[article]

saelo's Pwn2Own 2018 Safari + macOS

[exploit]

WebKit & JSC Architecture Reading List - For Vulnerability Researchers

Writeup and Exploit Tech

Attacking WebKit Applications by exploiting memory corruption bugs

[slides]

Vulnerability Discovery Against Apple Safari

[article]

A Methodical Approach to Browser Exploitation - six part blog

[article]

In 2 lists

Adventures on Hunting for Safari Sandbox Escapes

[video]

JITSploitation I: A JIT Bug

[article]

JITSploitation II: Getting Read/Write

[article]

JITSploitation III: Subverting Control Flow

[article]

Basic

SpiderMonkey Internals

[article]

JavaScript:New to SpiderMonkey

[article]

Writeup and Exploit Tech

CVE-2018-5129: Out-of-bounds write with malformed IPC messages

[article]

Firefox Spidermonkey JS Engine Exploitation

[article]

Browser Basic

Sea of Nodes

[articles] // multiple articles can be found within

LiveOverflow Browser Exploit Series

[articles]

Demystifying Browsers

[articles]

Fuzzing

The Power-Of Pair

[slides]

Browser Fuzzing

[slides]

Taking Browsers Fuzzing To The Next (DOM) Level

[slides]

DOM fuzzer - domato

[github]

In 2 lists

browser fuzzing framework - morph

[github]

browser fuzzing and crash management framework - grinder

[github]

In 2 lists

Browser Fuzzing with a Twist

[slides]

Browser fuzzing - peach

[wiki]

从零开始学Fuzzing系列:浏览器挖掘框架Morph诞生记 Learn Fuzzing from Very Start: the Birth of Browser Vulnerability Detection Framework…

[article]

BROWSER FUZZING IN 2014:David vs Goliath

[slides]

A Review of Fuzzing Tools and Methods

[article]

Writeup and Exploit Tech

it-sec catalog browser exploitation chapter

[articles]

2014 - Smashing The Browser: From Vulnerability Discovery To Exploit

[slides]

smash the browser

[github]

Collections

uxss-db

Collection of UXSS CVEs with PoCs by @Metnew.

In 2 lists

js-vuln-db

Collection of JavaScript engine CVEs with PoCs by @tunz.

In 2 lists
See category
94

Awesome OpenClaw Skills

VoltAgent/awesome-openclaw-skills

The awesome collection of OpenClaw skills. 5,400+ skills filtered and categorized from the official OpenClaw Skills Registry.🦞

Fresh★ 53k830 entriesPushed today
92

Awesome DeepSeek Harness (DSH) Plugin

awesome-dsh-plugin/awesome-dsh-plugin

A curated list of plugins for DeepSeek Harness (dsh) · DeepSeek Harness 插件精选列表

Fresh★ 17k1654 entriesPushed today
91

Awesome Guidelines

Kristories/awesome-guidelines

Programming style, best practices, and coding conventions.

Fresh★ 11k166 entriesPushed 2 days ago
90

Awesome

sindresorhus/awesome

😎 Awesome lists about all kinds of interesting topics [NOTE: Pull requests are temporarily disabled until I have a chance to catch up with the existing ones]

Fresh★ 513k51 entriesPushed 28 days ago
90

Awesome Prompts

ai-boost/awesome-prompts

Curated list of chatgpt prompts from the top-rated GPTs in the GPTs Store. Prompt Engineering, prompt attack & prompt protect. Advanced Prompt Engineering papers.

Fresh★ 9k288 entriesPushed today
90

Awesome README

matiassingers/awesome-readme

A curated list of awesome READMEs

Fresh★ 22k143 entriesPushed yesterday