Gruyère is a classic, intentionally vulnerable web application created by Google. It is designed to teach beginners how hackers find flaws and how developers can stop them. It uses a "gray-box" approach, meaning you have access to the source code while you try to break the app.
The Exploit: Because cookies are stored on the client side, they can be manipulated. Attackers can modify their own cookies to escalate privileges or impersonate other users. gruyere learn web application exploits defenses top
, the script is saved on the server (e.g., in a user's snippet) and executes when other users view that content. In Reflected XSS Search for "Google Gruyere" and open the live instance
Address:
House - 77 (4th floor),
Road - 16, Sector - 11,
Uttara Model Town,
Dhaka - 1230, Bangladesh.
(Visiting Hours: 3 p.m - 9 p.m)
Contact Info:
Hotline: +88 01755-092760
+88 01755-651597
Email: info.shield@dhakalanguage.com
Facebook:
www.facebook.com/shield.language