Interested in going full-time bug bounty? Check out our blueprint!

You can escape a sandbox from inside an iFrame!?

Leaking the top-level window.location.href by accessing the document.baseURI of a sandboxed iframe with a srcdoc!

Credit for this one goes to the one and only Johan Carlsson!