DOM Clobbering

All you need to know in one place. Learn about clobbering techniques, test your mobile and desktop browser online with a single click, create attack payloads interactively and master the defenses.

Get Started

Clobbering Wiki

DOM Clobbering techniques, vulnerability patterns, and defenses

Documentation

Browser Testing

Test your browser online, or check out analysis results

Repository

Payload Generation

Create DOM Clobbering attack payloads interactively

Dashboard

Vulnerability Detection

Automatically detect clobberable data flows in your web application

Repository

Github

All source code and content for this website is opensource

TheThing Repository DOMC-BT Repository

Academic Publication

This work has been published at IEEE S&P 2023 with a Distinguished Paper Award .

Download

OWASP CheatSheet

Checkout the DOM Clobbering prevention cheat sheet we created for you!

OWASP CheatSheet