Last month back in December I taught of hunting Rackspace for vulnerabilities. I was able to report over 10 reflective XSS vulnerabilities in their website. I think I was able to report the majority of the bugs in their website. They have a responsible disclosure policy and my name got published 🙂 http://www.rackspace.com/information/legal/rsdp
I would like to share some interesting poc XSS images. However I usually don’t share any kind of poc in live websites. But these guys gave me permission.
XSS in the index page.
XSS in the 404 Page.
Well there are lot more reflective XSS found. But these are the most interesting ones. Thank you very much for the acknowledgement. Happy to help you guys 😉
Update:
I received a nice t-short and a letter lately 🙂