LAB #04 Basic password reset poisoning
Understanding and exploiting Host header injection in password reset functionality.
Jul 15, 20262 min read11

Search for a command to run...

Series
Solve PortSwigger Web Security Academy labs with simple, practical walkthroughs covering web vulnerabilities, Burp Suite techniques, exploitation methods, and real world penetration testing skills.
Understanding and exploiting Host header injection in password reset functionality.

Understanding and exploiting an insecure redirect_uri validation in OAuth.

Understanding and exploiting an insecure OAuth account-linking implementation.

Understanding OpenID Dynamic Client Registration Abuse
