Lab: Web cache poisoning with an unkeyed cookie

Описание к видео Lab: Web cache poisoning with an unkeyed cookie

In-depth solution to PortSwigger's "Web cache poisoning with an unkeyed cookie" lab.

👀 Check out playlist    • Web Cache Poisoning   for all my solutions to the Web Cache Poisoning labs from PortSwigger.

Try it yourself:
https://portswigger.net/web-security/...

Timestamps:
00:00 - Intro
00:17 - Find a suitable cache oracle
00:53 - Add a cache buster
01:38 - Find unkeyed input
04:01 - Explore input potential
04:14 - Craft the XSS payload
05:40 - Inject our XSS payload
06:02 - Inject our harmful response into the cache

Комментарии

Информация по комментариям в разработке