OSCP-CPTS NOTES
⌘
Ctrl
k
Twitter
Github
Linkedin
Instagram
Discord
Support Me
More
For the complete documentation index, see
llms.txt
. This page is also available as
Markdown
.
Copy
On this page
Web Application Pentest
OAuth Attacks
OAuth Attacks (Labs: Portswigger Academy)
Lab 1 Authentication bypass via OAuth implicit flow
Lab 2 Forced OAuth profile linking
Lab 3 OAuth account hijacking via redirect_uri
Lab 4 Stealing OAuth access tokens via an open redirect
Lab 5 Stealing OAuth access tokens via a proxy page
Lab 6 SSRF via OpenID dynamic client registration
Previous
OpenID Connect
Next
Lab 1 Authentication bypass via OAuth implicit flow