Web - Client

Tuesday 11 April 2023, 20:49  #1
Web - Client CSP bypass with nonce
pikes
  • 2 posts

hey i am stuck on csp nonce challenge i have tried to input payload with img and style tag because they are src-self parsed by CSP header also i have inserted nonce value but it still returns page hacker statement written on it.

is there anything which i am missing or doing wrong plz let me know.

Saturday 21 October 2023, 07:05  #2
Web - Client CSP bypass with nonce
r00tSIS
  • 8 posts

maybe think filter....