webPromedium

Lab 70 — LivePulse

hackadvisor

Task: Express/Node.js support platform with WebSocket chat; chat.js renderMessage() uses innerHTML without sanitizing msg.content. Solution: Send stored XSS payload via WebSocket chat message, admin bot triggers it when visiting the ticket, exfiltrate non-HttpOnly flag cookie via same-origin notes API POST.

$ ls tags/ techniques/
admin_bot_exploitationdecoy_flag_avoidancestored_xss_via_websocket_chatinnerhtml_xss_sinksame_origin_cookie_exfiltration_via_notes_api

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups