Hello Friends,

I’m Rem01x And I’m Currently Preparing For The eWPTX Exam So I Will Be Walking Through All PortSwigger Labs And Make Sure To Make Writeups For All Of Them.

Let’s Start Now.

Assume that we have this website.

Untitled

Now, Let’s try to login with our account

Untitled

Please Notice that we have been redirected to the OAuth server

Now, Let’s follow the login

Untitled

Now, the Authorization screen pop out to show us the resources we are authorized.

Now, Let’s continue.

Untitled

And we logged in a wiener.

Now, Let’s see all the requests in BurpSuite.

Untitled

At the endpoint /authenticate the server is sending the user’s data and the token