CORS Bypasses

CORS Bypass

  1. 1.
    Origin:null
  2. 2.
    Origin:attacker.com
  3. 3.
    Origin:attacker.target.com
  4. 4.
    Origin:attackertarget.com
  5. 5.
    Origin:sub.attackertarget.com
  6. 6.
    Origin:attacker.com and then change the method Get to post/Post to Get
  7. 7.
    Origin:sub.attacker target.com
  8. 8.
    Origin:sub.attacker%target.com
  9. 9.
    Origin:attacker.com/target.com

Authors

Reference Tweets