Post #3532477
2026-07-02 10:56 UTC
We built a small project to inject Trusted Types enforcing sanitizer use for all HTML sinks. Without changing any of the insecure code.
https://github.com/cure53/DOMFortify
Maybe it is useful for someone, especially when having to maintain an older site with too many DOMXSS sinks to fix manually.
Replies (1)
-
@cure53@infosec.exchange 2026-07-02 18:31
CTFs hopefully being the primary usecase 🫠