Demystifying API Attacks Using Gamification
Learn about authentication, authorization, and security misconfiguration in API compromises by exploring this capture-the-flag game.
In 2018 @mangopdf described “Cookie Crimes”, which is great research around Chrome’s remote debugging feature that allows adversaries and malware to gain access to cookies quite convienently during post-exploitation.
The original research is published here, and it still works today.
The new Microsoft Edge browser and ChromiumMicrosoft’s latest Edge browser is based on the same code, Chromium. I guess, you already know where this is going now…