September 12, 2021
In September 2021 the Belgian ethical hacking platform Intigriti hosted a new XSS (cross site scripting) challenge.
The POC video shows first the XSS mutation payload that passes the security filter. We need to Base64 encode our payload and finally we can deliver the URL to our victim who stores a random password that fires the XSS attack.
Embedded writeup PDF: