Hacking Series Part 18
Challenge: Phonebook
Category: web security
We are given an instance of a website that requires us to login when we navigate to it. There is a message indicating that there is a new update with how users can login and it is posted by someone who is likely an admin of the website.
After scanning the website, I first noticed that there is a reflected XSS…