TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

PortSwigger Research

Using form hijacking to bypass CSP

2024-03-05 · Read original ↗

ATT&CK techniques detected

1 predictions
T1185Browser Session Hijacking
60%
“5 march 2024 at 14 : 55 utc - updated : tuesday, 5 march 2024 at 14 : 55 utc in this post we ' ll show you how to bypass csp by using an often overlooked technique that can enable password theft in a seemingly secure configuration. form hijacking isn ' t really a widely known tec…”

Summary

In this post we'll show you how to bypass CSP by using an often overlooked technique that can enable password theft in a seemingly secure configuration. What is form hijacking? Form hijacking isn't re