Tabnabbing, target=_blank, and Related XSS Edges

Lab HTML: target=_blank without rel, opener check in the opened tab, rel=noopener fix, harmless location rewrite — no phishing kit.

September 12, 2025 · 6 min · 1169 words · Jose Adalberto Gutierrez Ochoa