From t.weeks at vt.edu Tue Jul 8 13:03:28 2025 From: t.weeks at vt.edu (Weeks, Thomas "Tweeks") Date: Tue, 8 Jul 2025 18:03:28 +0000 Subject: [Security-Discuss] Fw: RISE July 10th - DOMination: Weaponizing XSS In-Reply-To: References: Message-ID: Cross posting for the RISE group meeting (this Thursday night) -- T.Weeks Thomas "Tweeks" Weeks Director, Technology Futures and Community Advocacy Division of Information Technology, Virginia Tech Cyber Range Engineer, VirginiaCyberRange.org (e) t.weeks at vt.edu / tweeks at VirginiaCyberRange.org ________________________________ From: Roanoke Infosec Sent: Monday, July 7, 2025 9:12 PM To: Roanoke Infosec Subject: RISE July 10th - DOMination: Weaponizing XSS Hey Cyber Enthusiasts, Hope you're all staying cool in this scorching July heat! While the temperatures outside are blazing, we've got a meeting coming up that's going to be even hotter – in a good, cybersecurity-savvy way, of course! Prepare to have your minds melted (with knowledge, not the sun!) at our next RISE Cyber Security meeting. We're thrilled to announce a speaker who's ready to fire up your understanding of web vulnerabilities. This month, we're welcoming the brilliant Ben Eldritch to the stage. He's bringing a talk with the following details: DOMination: Weaponizing XSS Even the smallest input can create a big problem. Oftentimes XSS vulnerabilities are demonstrated by popping an alert box on your screen or sending out document cookies to an external endpoint. But did you know as soon as you get access to the DOM the webpage becomes a blank canvas? The possibilities are endless from background JavaScript execution, mapping internal networks and even assisting in MFA mimicry. Join us as we discuss various techniques that turn simple XSS vulnerabilities into powerful phishing landscapes and advanced threat playgrounds. Come join us for an evening that's sure to be illuminating and help you beat the heat of potential cyber threats! We promise it'll be more refreshing than an ice-cold lemonade on a hot day. ________________________________ Event Details: * Date: Thursday, July 10, 2025 * Time: 6pm * Location: Virginia Western Business/Science Building Room M302 * Speaker: Ben Eldritch * Talk Title: DOMination: Weaponizing XSS ________________________________ Meeting Details: We will be meeting at Virginia Western Community College in the Hall Family Business/Science Building. Take the stairs to the left and go to the third floor and go to the CyberSecurity lab in room M302. [https://lh7-rt.googleusercontent.com/docsz/AD_4nXekSq-c0fNckFY1TUfnMNB02StVU64DodJWkyI83n1_AOY9VI5Sed6lXp5Kw_RGnMr50Tb8sO4Teq7B_0RTE6Vrq1_1Nk1kwd43D8emCWv-EO_H6mW-pJlrLQ983NyiHaFg9CaHYA?key=rL9ifFGcMHs_ale9p4B9ag] Meeting info: Virginia Western Community College Business/Science Building, Room M302 July 10th, 2025 @ 6PM https://maps.app.goo.gl/ToJyoaMJ5BUy417QA Looking forward to seeing you there! Best regards, --- Roanoke InfoSec Exchange (RISE) The Premier InfoSec meet-up in the Roanoke Valley region! Meetings on 2nd Thursday of every month - check our blog for schedule Visit our blog | See us on YouTube -------------- next part -------------- An HTML attachment was scrubbed... URL: