webProhard
Pavel
alfactf
Task: Social network with bot that visits user profiles and has flag cookie with httpOnly:false. Solution: Stored XSS via unsanitized avatar_url opens popup window that persists across bot navigation and steals cookie after bot logs in.
$ ls tags/ techniques/
xssstored_xsscookie_stealingselenium_botpopup_windowhttponly_falseavatar_injectionsocial_networkclient_side
Stored XSS via unsanitized avatar_url attributeCookie stealing via popup window persistenceSelenium bot exploitationhttpOnly:false cookie extraction
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Sign in with GitHub to continue. No email required.
$sign in$ grep --similar
Similar writeups
- [forensics][free]Плоскоссан— alfactf
- [web][Pro]Царь горы (King of the Hill)— hackerlab
- [web][Pro]Печеньки с молочком (Cookies with Milk)— duckerz
- [web][Pro]Запретный код 2 (Forbidden Code 2) — HackerLab— hackerlab
- [pwn][Pro]Купи слона (Buy an Elephant)— HackerLab