The latest Minded Security Labs project regards DOM XSS vulnerabilities. We have released a tool called DOMinatorPro which helps security testers to analyze and discover DOM Based Cross Site Scripting issues.
Ready Data: Realtime Dynamic Data Tainting
Automatic Exploitability Check
Data Validation and Context Awareness makes the use of a dynamic runtime tainting model on strings even more powerful since it understands if a DOM XSS vulnerability is actually exploitable.