Skip to main content

exploiting-reverse-tab-nabbing

Identifying and exploiting reverse tabnabbing, where a link opened with target="_blank" without rel="noopener" gives the newly opened (attacker-controlled) page a reference to the originating window via window.opener, allowing it to redirect the original tab to a phishing clone. Activates when assessing user-controllable links, outbound links, or any anchor/window.open that opens new tabs.

Ir para a instalação

Informações da origem

Repositório
xalgord/xalgorix
Última atividade na origem
6 de junho de 2026 às 16:41
Idioma detectado do SKILL.md
inglês
Estrelas
813
Forks
146

Opções de instalação

Por padrão, está selecionado o prompt que primeiro revisa a origem. Você pode mudar para um comando direto ou baixar uma cópia local.

Revise os arquivos de origem

Leia o SKILL.md e os arquivos complementares exibidos pelo SkillsMP antes de decidir se vai instalar.