The Burp Suite User Forum will be discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Centre. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTRE DISCORD

Create new post

Lab: Offline password cracking

ghx000 | Last updated: Jul 17, 2024 07:40PM UTC

Hi All im Trying To Solve This Lab : Lab: Offline password cracking i know that i need to use xss vulnrability to steal carlos cookie but when i put a script it only reflect and show My cookie what i should do to store the xss script so other users view it ? Thanks ghx00

Ben, PortSwigger Agent | Last updated: Jul 18, 2024 08:07AM UTC

Hi, Have you read the written solution provided for this lab? Step 5 details the approach needed and what exploit to use here.

ghx000 | Last updated: Jul 18, 2024 09:43AM UTC

Hi No i dont . tbh i dont like seeing solutions bcs i wanna improve my self any tips that can help to solve this lab ?

Ben, PortSwigger Agent | Last updated: Jul 18, 2024 12:26PM UTC

Hi, If you do not want to check the solution for hints (in my opinion, there is nothing wrong with doing this if you believe you have exhausted all of your current approaches and you will take on-board the points covered in the solution going forward) then we would recommend going back through the relevant learning material for hints.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.