Student Reviews
( 5 Of 5 )
1 review
Video of What is Blind XSS & How Hackers Use it to Steal Your Browser Cookies? in Web PenTesting course by Motasem Hamdan Cyber Security & Tech channel, video No. 1 free certified online
In this video walkthrough, we covered and talekd about Blind Cross Site Scripting Vulnerability. Blind XSS is same as Stored XSS but you can't see the payload working or if it actually stored in the database of the website and that's because the payload is executed by another page, instance, application or even a different user. We explained a demo scenario used to show how blind XSS, upon disocvered, can be used to steal and grap browser cookies.
Receive Cyber Security Field, Certifications Notes and Special Training Videos
https://www.youtube.com/channel/UCNSdU_1ehXtGclimTVckHmQ/join
Writeup
https://motasem-notes.net/how-can-stored-xss-vulnerability-lead-to-cookie-stealing-practical-training-scenario/
Store
https://buymeacoffee.com/notescatalog/extras
Patreon
https://www.patreon.com/motasemhamdan
Instagram
https://www.instagram.com/mastermindstudynotes/
Google Profile
https://maps.app.goo.gl/eLotQQb7Dm6aiL8z6
LinkedIn
[1]: https://www.linkedin.com/in/motasem-hamdan-7673289b/
[2]: https://www.linkedin.com/in/motasem-eldad-ha-bb42481b2/
Instagram
https://www.instagram.com/mastermindstudynotes/
Twitter
https://twitter.com/ManMotasem
Facebook
https://www.facebook.com/motasemhamdantty/
0:00 - Introduction to Cross-Site Scripting (XSS)
0:19 - What is Blind Cross-Site Scripting?
1:02 - Entry Points and Forms in XSS
2:30 - Example of Blind XSS in a Web Application
4:00 - Demonstration of Testing for Reflected XSS
6:07 - Testing for Stored XSS and Cookie Stealing
7:37 - Receiving and Decoding the Stolen Cookie
9:38 - Accessing Admin Pages with Stolen Cookies
10:16 - Testing for Different Payloads