Web Hard
3 min read
XSS to Account Takeover - Real World Example
How we chained XSS with CSRF to achieve full account takeover on a production system
by havoc 2025-11-02
Technical breakdowns of CTF challenges, vulnerability analyses, and exploitation techniques. Each writeup details our approach, tools used, and lessons learned.
How we chained XSS with CSRF to achieve full account takeover on a production system
Bypassing NX protection using return-to-libc technique
Breaking RSA encryption by factoring small primes