An actual XSS on google.com by Masato Kinugawa. It abuses a parser differential between a JavaScript enabled and disabled context.

Discover by Tools

Want to know how a tool can be used? Or learn more about a tool's feature? Find videos using certain tools.