login——执行登录的 curl命令如下所示: curl -i -X POST -d username=user -d password=userPass http://localhost:8080/spring-security-rest 存储在文件中: curl -i -X POST -d username=user -d password=userPass -c /opt/cookies.txt http://localhost:8080/spring-security-rest 来执行进一步的身份认证请求: curl -i --header "Accept:application/json" -X GET -b /opt/cookies.txt http://localhost:8080/spring-security-rest
index.html /graphql /libs/swaggerui /libs/swaggerui/ /spring-security-oauth-resource/swagger-ui.html /spring-security-rest
swagger-dubbo/api-docs /template/swagger-ui.html /swagger/static/index.html /dubbo-provider/distv2/index.html /spring-security-rest
swagger-ui.html swagger/swagger-ui.html api/swagger-ui.html api/doc.html swagger/index.html druid/index.html spring-security-rest
然后访问攻击者应用: http://localhost:8081/spring-security-rest/api/csrfAttacker.html 追踪源自此页面的请求,能够发现那些针对银行应用的请求
swagger-dubbo/api-docs /template/swagger-ui.html /swagger/static/index.html /dubbo-provider/distv2/index.html /spring-security-rest
swagger-ui.html 一些可能会遇到的接口路由变形: /api.html/sw/swagger-ui.html/api/swagger-ui.html/template/swagger-ui.html/spring-security-rest