Web - Client

Tuesday 7 November 2023, 13:18  #1
DOM Clobbering
sec.zone64
  • 6 posts

Hello everyone

I’m stuck in part of "DOM Clobbering" challenge. I can’t find a way to bypass CSP. The main exploits techqniue work and I can change the src of script. But it didn’t work because of CSP restrications. Clould you please give me a hand?

Thank you very much

Thursday 18 January 2024, 02:01  #2
DOM Clobbering
dzonerzy
  • 2 posts

Same here, I can modify URL but can’t find a way to bypass CSP