It’s been months since I have released ppmap and it didn’t take much for the tool to be popular because of how crazy and trending Prototype Pollution vulnerability actually is.
Searching for client-side Prototype Pollution
Well for this type of hunting we are going to use Chrome/Chromium, since they have the Developer Tools which is for sure more compatible for debugging.
The exploitation starts by first finding is the website is vulnerable to client-side prototype pollution or not. We are going to use ppmap which will
Read the article