logon Writeup PicoCTF
A writeup for the picoCTF easy web challenge named logon.
A writeup for the picoCTF easy web challenge named logon.
A PortSwigger XSS lab writeup about reflected XSS with event handlers and href attributes blocked.
A writeup for the PicoCTF easy web challenge named Insp3ct0r.
A picoCTF web challenge writeup about using a HEAD request to retrieve the flag from HTTP response headers.
A picoCTF web challenge writeup about recovering a client-side checked password from JavaScript source code.
A PortSwigger XSS lab writeup about reflected XSS in a JavaScript URL with some characters blocked.
A writeup for the picoCTF easy web challenge named n0s4n1ty 1.
A writeup for the picoCTF easy web challenge named Scavenger Hunt.
A PortSwigger XSS lab writeup about bypassing a strict CSP by using dangling markup and form hijacking.
A PortSwigger XSS lab writeup about bypassing CSP by injecting a directive through a user-controlled report-uri value.