July 31, 2022
Belgian ethical hacking platform Intigriti hosted a new monthly XSS (cross site scripting) challenge in July 2022.
The challenge was build around a SQL injection that contained another SQL injection inside one of its database columns. The final step required to bypass the CSP protection that was set in place.
Embedded writeup PDF: