prototype-pollution-advanced
yaklang/hack-skills
This advanced playbook covers escalating prototype pollution into Remote Code Execution (RCE) and Cross-Site Scripting (XSS). It details exploitation techniques across various environments, including Node.js child_process, EJS, Pug, Handlebars, and client-side libraries like jQuery and Lodash. It is designed for security researchers and penetration testers to systematic locate and exploit deep merge sinks and framework gadgets.