BREAKDEV
  • Home
  • Evilginx Pro
  • Evilginx Mastery
  • Tools
  • Contact

webdev

A collection of 1 post
Sniping Insecure Cookies with XSS
hacking

Sniping Insecure Cookies with XSS

In this post I want to talk about improper implementation of session tokens and how one XSS vulnerability can result in full compromise of a web application. The following analysis is based on an existing real-life web application. I cover the step-by-step process that lead to administrator's account take over
Mar 22, 2017 — 11 min read
BREAKDEV © 2025
  • E-mail
  • Evilginx Pro
  • Evilginx Mastery
  • GitHub
  • Twitter
  • LinkedIn
Powered by Ghost