ok i am curious on how you can view cookies that you stole and how can you use other peoples cookies that you have stole as your own?
ok i am curious on how you can view cookies that you stole and how can you use other peoples cookies that you have stole as your own?
Attackers usually would make the victim send the cookies off to their own server after the victim has clicked the link. This might be by requesting a script in an image tag with the cookie included in a get variable, or by Javascript redirecting the victim to his server.how you can view cookies that you stole
Once the victim clicks the link and their browser has sent the cookie details back to the attacker's server, the attacker can view the cookies using whatever method the script used to get them to him; for example putting them all in a text file or emailing them to him. Cookies are just text after all.
Enter this in your address bar to see your own cookie for this domain:
javascript:alert(document.cookie);
That is what a cookie-thief wants. When someone does a XSS attack, they inject malicious code into a victim's page with the goal of accessing objects like cookies and getting them back to their own server.
I use the Add 'n' Edit Cookies extension for Firefox.how can you use other peoples cookies that you have stole as your own?
Try reading these:
[url]http://en.wikipedia.org/wiki/Form_(web[/url])
[url]http://en.wikipedia.org/wiki/HTTP_cookie[/url]
[url]http://www.w*schools.com/[/url]
[url]http://www.php.net/manual/en/[/url]
thanks alot man but i have one more question I made the php script that steels cookies and it just came out like[URL="http://dipman44.78*mb.com/log.txt"]this[/URL]
my cookie steeler is[URL="http://dipman44.78*mb.com/funnyvideo.php"]here[/URL]
Could be many reasons it didn't work. It's impossible for me to know without the PHP source and other info.
Open it in a text editor.