what is an open redirect vulnerability? (intermediate) anthony explains #389

preview_player
Показать описание
today I show what an open redirect is, a functional example of a common open redirect mistake (login pages) and some strategies for fixing it!

==========

I won't ask for subscriptions / likes / comments in videos but it really helps the channel. If you have any suggestions or things you'd like to see please comment below!
Рекомендации по теме
Комментарии
Автор

I don't see how this gets exploited. If you trick someone into logging in & redirecting the a new website, that will be on a different domain & the cookies shouldn't follow, right?

MatthewMartinDean
Автор

What do you mean when you say you can peer into the value but not modify it? Are you taking about the server, the user or both?

_scourvinate
Автор

Hey Anthony, just to let you know, you accidentally set the title to the wrong number.

taylerporter