- From the OWASP Mutilliae II menu, select Login by navigating to OWASP 2013 | A3 - Cross Site Scripting (XSS) | Persistent (First Order) | Add to your blog:
- Place some verbiage into the text area. Before clicking the Save Blog Entry button, let's try a payload with the entry:
- Switch to the Burp Proxy | Intercept tab. Turn Interceptor on with the button Intercept is on.
- While Proxy | Interceptor has the request paused, insert the new payload of <script>alert(1);</script> immediately following the verbiage you added to the ...
With Safari, you learn the way you learn best. Get unlimited access to videos, live online training,
learning paths, books, interactive tutorials, and more.