Web - Client

mardi 5 octobre 2021, 11:30  #1
Web - Client - XSS DOM Based - IP et port
polo07
  • 2 posts

Hi everyone,
To solve the challenge, I created a tiny web server to retrieve the admin’s cookie. However two things :
 I don’t have access to my wifi router so I can’t open the right ports.
 In the proposed solution, i send my ip address which I think is not recommended for security reasons ahah :p

I think that using a VPN could be a solution, but do I have still to open the right port on my router ?

So, do you have any hint to give me so that I could find an other solution to return back the admin’s cookie without using the web server ?

Thanks for your help ;)

mercredi 6 octobre 2021, 00:05  #2
Web - Client - XSS DOM Based - IP et port
Th1b4ud
  • 1636 posts

You can simply use beeceptor (https://beeceptor.com/). It’s enough to capture one HTTP request from the admin

jeudi 7 octobre 2021, 13:18  #3
Web - Client - XSS DOM Based - IP et port
polo07
  • 2 posts

Merci bien pour l’aide :)
Bonne journée