완료됨
some things I don't understand about the challenge

I found an xss and use payload with flow, go to /whoami then extrect flag message but i always receive an "guest" message, im stuck at that step.

#web
작성자 정보
더 깊이 있는 답변이 필요할 때
드림핵 팀과 멘토에게 직접 문의해 보세요!
답변 1
avatar
Garden_
시스템 해킹 입문
avatar
Garden_
시스템 해킹 입문

It is better to use XSS in another way, rather than changing the flow directly to /whoami.

2025.08.01. 16:24