Course
In this lab, you will learn to bypass a filter that blocks the word "script" to create an XSS payload that triggers an alert box. You will explore alternative HTML tags and attributes to execute JavaScript without using the "script" tag.
Skills covered
Injection
Client Side
Topics
XSS
CWE-79
Included with PRO
Full course content
3 videos
Common mistakes
Ready to practice?
Get access to this lab and 600+ hands-on exercises with a PRO subscription.