Cross-Site Scripting (XSS)
intermediate Hands-on lab 40 min 3 tasksSubscription
Inject JavaScript into web apps via reflected, stored, and DOM-based XSS, then weaponize it to steal session cookies and hijack accounts.
This lab is available with a Purple Edge subscription. Sign in to view the full overview and start the lab.
Part of these paths
Unlock this lab
Launch the lab in your browser. Real Kali, Ubuntu and Windows targets, guided step by step. No setup, no VM downloads.
Updated 2026-06-06