Name is required.
Email address is required.
Invalid email address
Answer is required.
Exceeding max length of 5KB

the ability to reset a lab

alienhax Oct 24, 2019 07:26PM UTC

after mucking about with:

https://portswigger.net/web-security/cross-site-scripting/exploiting/lab-stealing-cookies

i ended up messing the pages with csrf reuests\blocking the comment form.
even though i can send manually a comment post request with a XSS script to fix this
on the victims session (in order to complete the lab), i think you need to have the ability to reset the lab in order to avoid such convoluted solutions that occur in case of a mess done.

thank you.


Liam Tai-Hogan Oct 25, 2019 07:10AM UTC Support Center agent

The lab should reset after 15 minutes of inactivity.

Please let us know if you need any further assistance.


Post Your public answer

Your name
Your email address
Answer