Chrome 0.0
<!-- sample vector --> <img src=xx:xx 0x2fonerror=alert(1)>

@irsdl 18
Characters that close a HTML comment 4
ignored chars in html encoding and attributes2
Possibility of XSS via lead bytes
Protocols before Javascript to run code by using Flash navigateURL
XSS Without Space Test 1