Skip to content

Instantly share code, notes, and snippets.

Simon Pieters zcorpan

View GitHub Profile
@zcorpan
zcorpan / results-20160708-094948.csv
Created Jul 8, 2016
Usage of <script> with unsupported type or language
View results-20160708-094948.csv
We can make this file beautiful and searchable if this error is corrected: Unclosed quoted field in line 5.
page,url,match
http://www.bottomcash.com/,http://www.reimageplus.com/lp/mxy/index.php?tracking=ReimageNetworkCon&banner=Shula&adgroup=7948867&ads_name=4135497&keyword=direct&context=v1_7948867_230947_3o1_CB579D8FD565084731100319827_-1_4135497_11avv_535_CB579D8FD56508472922297913_m_ju_1240512828049882575_865097___2_73_4je1_ju_,"<script type=""text/css"" src=""about:blank"" class=""jollywallet_mainscript"" show=""on"">"
http://www.pricedekho.com/,http://www.pricedekho.com/,"<script data-pagespeed-orig-type=""text/javascript"" src=""http://asset2.pricedekho.com/assets/e46d6a77/jquery.min.js"" type=""text/psajs"" orig_index=""0"">"
http://www.diariosanrafael.com.ar/,http://www.diariosanrafael.com.ar/inicio,"<script src=""http://ajax.googleapis.com/ajax/libs/mootools/1.4.5/mootools-yui-compressed.js"" pagespeed_orig_type=""text/javascript"" type=""text/psajs"" orig_index=""0"">"
http://www.riverfronttimes.com/,"http://oascentral.riverfronttimes.com/RealMedia/ads/adstream_mjx.ads/www.riverfronttimes2.com/home/10151
@zcorpan
zcorpan / results-20160809-114022.csv
Created Aug 9, 2016
Pages in httparchive with role="text"
View results-20160809-114022.csv
We can make this file beautiful and searchable if this error is corrected: It looks like row 6 should actually have 3 columns, instead of 2. in line 5.
page,url,tag
http://www.greenboutique.ro/,http://s1.blt.ro/greenboutique.ro/js/d.scripts.1464353877.845342.js,"<div role=""text"" aria-label=""'+this.title+'"" class=""star-rating rater-'+control.serial+'"">"
http://www.webdesigntownsville.net.au/,http://www.webdesigntownsville.net.au/min/serve/g?g=c17ddc4712923c93b96e52deafaffa27&lm=1446462547,"<div role=""text"" aria-label=""'+this.title+'"" class=""star-rating rater-'+control.serial+'"">"
http://www.justin-tv-izle.com/,http://www.justin-tv-izle.com/wp-content/plugins/all-in-one-schemaorg-rich-snippets/js/jquery.rating.min.js?ver=4.5.3,"<div role=""text"" aria-label=""'+this.title+'"" class=""star-rating rater-'+control.serial+'"">"
http://www.ganttexcel.com/,http://16016-presscdn-0-59.pagely.netdna-cdn.com/wp-content/plugins/all-in-one-schemaorg-rich-snippets/js/jquery.rating.min.js?ver=4.5.3,"<div role=""text"" aria-label=""'+this.title+'"" class=""star-rating rater-'+control.serial+'"">"
http://www.wow-themes.com/,http://wow-themes.com/assets/js/jquery.r
View setinnertext.html
<!doctype html>
<script>
function collect(re, pointer, input) {
var collected = "";
while (input[pointer] !== undefined && re.test(input[pointer])) {
collected += input[pointer];
pointer++;
}
return [collected, pointer];
}
@zcorpan
zcorpan / mutation_events_2016_08_01.csv
Created Aug 24, 2016
Mutation events in httparchive
View mutation_events_2016_08_01.csv
We can't make this file beautiful and searchable because it's too large.
page,url,ev
http://www.thehindu.com/,https://s0.2mdn.net/ads/richmedia/studio/pv2/42628997/20160603120534968/index.html?e=69&renderingType=2&leftOffset=0&topOffset=0&c=V5B9d11II0&t=1,DOMCharacterDataModified
http://www.makemysushi.com/,https://www.fullstory.com/s/fs.js,DOMCharacterDataModified
http://www.sharecafe.com.au/,http://ds.serving-sys.com/BurstingRes/Site-45655/WSFolders/7266186//index.html?v=_2_65_1_0&n=1,DOMCharacterDataModified
http://www.dival.es/,http://www--dival--es.accesible.inclusite.com/inclusite/frameworks_initializer.js?lng=ca-ES,DOMCharacterDataModified
http://www.ti-net.com.cn/,http://dn-growing.qbox.me/vds.js,DOMCharacterDataModified
http://www.designdazzle.com/,http://cdn-sic.33across.com/1/javascripts/sic.js,DOMCharacterDataModified
http://www.wochit.com/,https://www.fullstory.com/s/fs.js,DOMCharacterDataModified
http://www.mamosreceptai.lt/,http://adocean.111.lt/files/x/zdc/tqmlnqj/vfdriuhfbz/index.html,DOMCharacterDataModified
View keybase.md

Keybase proof

I hereby claim:

  • I am zcorpan on github.
  • I am zcorpan (https://keybase.io/zcorpan) on keybase.
  • I have a public key whose fingerprint is 38F7 4A1D ABB5 BF09 6383 29C4 C3BE B258 9148 CEB8

To claim this, I am signing this object:

@zcorpan
zcorpan / htmlquiz-iframe-escape.md
Last active Sep 20, 2016
#HTMLQuiz what happens (iframe escape)
View htmlquiz-iframe-escape.md

#HTMLQuiz what happens?

<iframe id=x></iframe>
<script>
x.contentDocument.body.appendChild(x);
</script>
  • wild DOMException appears
  • iframe escapes
@zcorpan
zcorpan / results-20161017-163743.csv
Created Oct 17, 2016
URLs in httparchive containing ".outerText"
View results-20161017-163743.csv
url num
http://adsearch.adkontekst.pl/_/both/?prefix=akon&namespace=qa_akon&nc=0&browser=safari 111
http://static.mtml.ru/js/constructor_head_scripts.js?1474033114 67
http://d3n8a8pro7vhmx.cloudfront.net/assets/tinymce-jquery-b16bb09336f0e7f04e5e1d9228b0b6e8.js 50
http://cdn.livestream.com/website/events/0.27.7/javascripts//player.js 43
http://static.mtml.ru/js/constructor_head_scripts.js?1473768899 31
https://assets.adobedtm.com/c4286b4b2b34cb9b097fac1cfe0e4ac48afd27e3/satelliteLib-de93594d0f2c832f2e24197005ac21ff61e4bca4.js 24
http://api.reftagger.com/v2/reftagger.js 23
http://api.reftagger.com/v2/RefTagger.js 22
http://static.mtml.ru/js/constructor_head_scripts.js?1474391042 20
@zcorpan
zcorpan / results-20161116-143944.csv
Created Nov 16, 2016
httparchive pages using markup in iframes
View results-20161116-143944.csv
We can make this file beautiful and searchable if this error is corrected: Unclosed quoted field in line 5.
page,url,match
http://www.ilgirlsdaily.com/,http://www.ilgirlsdaily.com/,"<iframe id=""ca30f4c7df"" name=""ca30f4c7df"" src=""//us-ads.openx.net/w/1.0/afr?auid=501694&cb=insert_random_number_here"" frameborder=""0"" scrolling=""no"" width=""160"" height=""600""><a href=""//us-ads.openx.net/w/1.0/rc?cs=ca30f4c7df&cb=insert_random_number_here"" >"
http://www.sitemeter.com/,http://www.sitemeter.com/,<iframe src=footer_banner_test.html width=800 height=175 frameborder=0> </div>
http://www.casimirocastillojal.gob.mx/,http://www.casimirocastillojal.gob.mx/,"<iframe width=""100%"" height=""380"" src=""imagenes/gob_abierto.jpg"" frameborder=""0"" allowfullscreen=""allowfullscreen"" scrolling=""no""><a href=""http://www.google.com"">"
http://www.intimshop.ru/,http://www.intimshop.ru/,"<iframe src=""//ads.adfox.ru/243010/getcode?pp=g&amp;ps=cdqc&amp;p2=fghl&amp;p3=a&amp;p4=a&amp;pct=a&amp;plp=a&amp;pli=a&amp;pop=a&amp;pr=' + pr + '&amp;pt=b&amp;pd=' + addate.getdate() + '&amp;pw=' + addate.getday() + '&amp;pv=' + addat
@zcorpan
zcorpan / results-20161202-212844.csv
Created Dec 6, 2016
httparchive pages containing <address> and <article> + analysis
View results-20161202-212844.csv
page use notes not contact information
http://www.spartak.ru/ contact information for site
http://www.makumaku.jp/ company postal address
http://www.wtxl.com/ contact information for site
http://www.mhc.kr/ Request removal of post + email 1
http://www.udd.cl/ Physical location for upcoming event <address> applies to <article> 1
http://www.chinatimes.com/ Copyright + link to general company info 1
http://www.gloucestertimes.com/ contact information for site
http://www.tribdem.com/ contact information for site
http://www.hvrsd.org/ contact information for site
@zcorpan
zcorpan / results-20170105-141014.csv
Created Jan 5, 2017
Pages in httparchive:har.2016_12_15_chrome_requests_bodies with <area shape=default> and no nohref
View results-20170105-141014.csv
We can make this file beautiful and searchable if this error is corrected: Unclosed quoted field in line 9.
page,url,match
http://www.narutopedia.eu/,http://www.narutopedia.eu/,"<area shape=""default"" alt=""startseite"" href=""http://www.narutopedia.eu/"">"
http://www.awardspace.net/,https://www.awardspace.com/,"<area shape=""default"" href=""/signup?gid=1603&#038;months_1=12"" target="""">"
http://www.magicoveneto.it/,http://www.magicoveneto.it/,"<area shape=""default"" alt=""click on the map"" />"
http://www.tilelife.co.jp/,http://www.tilelife.co.jp/,"<area shape=""default"" href=""http://www.tilelife.co.jp/news/"" alt=""¤ªãî¤é¤»"">"
http://www.metalaficion.com/,http://foro.metalaficion.com/,"<area shape=""default"" href=""http://hp.martinerni.ch/congenialrope.php?ld=2"" />"
http://www.mudcat.org/,http://www.mudcat.org/,"<area shape=default href=""http://mudcat.org"">"
http://www.yaoko-net.com/,http://www.yaoko-net.com/,"<area shape=""default"" href=""store/store01/"" alt=""チラシ・店舗検索のページへ"">"
http://www.fiddlesalad.com/,http://pythonfiddle.s3.amazonaws.com/js/codemirror.fiddle.js.gz?87,"
You can’t perform that action at this time.