Create an account

Very important

  • To access the important data of the forums, you must be active in each forum and especially in the leaks and database leaks section, send data and after sending the data and activity, data and important content will be opened and visible for you.
  • You will only see chat messages from people who are at or below your level.
  • More than 500,000 database leaks and millions of account leaks are waiting for you, so access and view with more activity.
  • Many important data are inactive and inaccessible for you, so open them with activity. (This will be done automatically)


Thread Rating:
  • 582 Vote(s) - 3.46 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Complete XSS Tutorial

#1
Hi XSS is in 2 ways, Persistent and Non-Persistent type.

For XSS we will use something called a cookie catcher.
Question will be that why we would need someone else's cookie?
The answer is that we can change our browser's cookies to login as them!!! So lets call it Session Hijacking :biggrin:

First go to a free hosting site like

[To see links please register here]

or other php hosting sites and register there. Then download this cookie catcher and upload it.

Cookie Catcher:

[To see links please register here]



What does the cookie catcher do?
It grabs the user's:
  • Cookies
  • IP
  • Referral link which what page it got to that link
  • Time and Date



Get Vulnerable sites:

Ok first we need sites that are vulnerable to XSS so it will work on them.
To test it we will need to add a code after the link.
I will use this site that many of you probably saw it before.

[To see links please register here]


Now for testing if a site is vuln or not you can add these codes:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

Or a new one which i found out myself which you can inject HTML:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Then if we see a java script popup like this:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

and submit that post in the forum or the comment box also its good to add something before adding the code like: hey i got a problem logging in???
so they wont suspect you :smile:

Refresh the page, now go to the newly created page, in the same directory as you saved your cookie catcher .php search for cookies.html which is a new file that show you the cookies. like if your cookie catcher link would be:

[To see links please register here]

catcher.php
the container of the cookies would be:

[To see links please register here]


Now visit cookies.html and you would see the session of that cookie!
PS: the site i used doesn't support cookies so you can use:

[To see links please register here]

for cookie supporting.

Now there is another way for a cookie grabbing drive by, add this code and post it:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

Then post it in the forum or the comment box.
Now this will open a iframe in the page which will allow you to have the same page in that website. If you don't know about iframes make a new html file in your computer and just do a

<iframe src="www.google.com"></iframe> and you will understand iframes more :smile:

ofc the site Needs to have cookies supported! a blank javascript means you need to go to another site.



Non-Persistent XSS:


Ok in this method we will make the victim admin go to our link. First we will pick a XSS vuln site. For this method we will need a search.php which that page is vuln to XSS and has cookies in that page. In the vuln search.php in the textbox for the word to search for type:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


and click the search button. If you see a javascript popup means its vuln to Non-Persistent XSS attack. Ok now we will do something similar.
I will use this link for this method:

[To see links please register here]

Now in front of the search.php?search= add this:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

Now go to

[To see links please register here]

and shrink the whole page's link. Try to find a site administrator's E-mail in that vuln website and send a Fake Mail from a online fake mailer like this one:

[To see links please register here]


Now in the body just tell something fake like: Hey i found a huge bug in your website! and give him the shrinked link of the search.php which you added the code in front of it to him. so the Tinyurl will mask it and once he goes to the link you will see his cookies in your cookies.html and he will just be redirected to the link in your cookies catcher. No matter what he does and changes his password you can still login as him :smile:


Session Hijacking:

Ok now you have the admin's cookies either way, so we need to edit our own browser's cookies. First go to that page's admin login or its main page and delete ALL of your cookies from that page. Now go in your cookies.html page and copy everything in front of the Cookie: in a note opened Notepad. The ; separates cookies from each other so first copy the code before the ; .
Now go in that vuln website and clear the link. instead add this:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

or for an example:

Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.


Then visit the link. Do this with all of the cookies and refresh the page. And wham!!! your logged in as administrator :evil:
So now go in your admin panel and upload your deface page.





Good luck now you hacked a site with XSS :thumbs:

This guide was written by 1234hotmaster and wasn't leeched from ANYWHERE else or copied. If you share this please give credits cause i spent alot of time writing this guide for you guys :innocent:

If you want to thank me you can +Rep me instead:

[To see links please register here]


Have a nice day and if you have any questions or need help about XSS just

[To see links please register here]

me :smile:





Note: This guide is for educational purposes only!!! else I'm not responsible of what action(s) you may do with this guide.
[/hide]
Reply

#2
Cool!!!! I do like it!!!!

Will you make a guide on xss defacing too?
Reply

#3
glad you liked it :smile:

sure i will
Reply

#4
err..a bit confusing on the "Get Vuln Site" The others i can understand.......:heh:
Reply

#5
i like it... i will post XSS next time
Reply

#6
Wooowwwww bro nice tutorial :biggrin:
I lost my old xss tut and almost forgot it lol:tongue:
Wanna do a tut with me about lfi and rfi later on?
Reply

#7
Quote:(02-13-2011, 12:43 AM)Lenalee Wrote:

[To see links please register here]

err..a bit confusing on the "Get Vuln Site" The others i can understand.......:heh:
well pm me if you need help. well a vuln site is a site like this one:

[To see links please register here]


Quote:(02-13-2011, 03:04 AM)Liyan Wrote:

[To see links please register here]

i like it... i will post XSS next time
well, this IS a XSS guide :\


Quote:(02-13-2011, 10:13 AM)V1P3R Wrote:

[To see links please register here]

Wooowwwww bro nice tutorial :biggrin:
I lost my old xss tut and almost forgot it lol:tongue:
Wanna do a tut with me about lfi and rfi later on?
sure! :smile:

Reply

#8
Quote:(02-14-2011, 01:08 AM)Guest Wrote:

[To see links please register here]

i have always admired hacks and dreamed of being top notch, but never really did anything except study some .. new to this site but would love to learn.

begin by registering :thumbs:
Reply

#9
great tutorial sir... It's easy to understand... thank you.

i share this some vulnerable sites:


Hidden Content
You must

[To see links please register here]

or

[To see links please register here]

to view this content.

Reply

#10
And i forgot to say, VBulletin, MyBB and Wordpress forums are invulnerable to both XSS and SQLI. ofc wordpress was once vuln but they fixed it :smile:

[To see links please register here]

don't waste your time
Reply



Forum Jump:


Users browsing this thread:
1 Guest(s)

©0Day  2016 - 2023 | All Rights Reserved.  Made with    for the community. Connected through