Course
This course covers the exploitation of an insecure OAuth2 Authorization Server that allows a malicious user to trick a victim into granting access to their account. It demonstrates how a Cross-Site Scripting (XSS) vulnerability on the Authorization Server can be leveraged to bypass CSRF protection and execute unauthorized actions.
Skills covered
Injection
Authentication
Client Side
Operating System
Network
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.