BOOK THIS SPACE FOR AD
ARTICLE ADJust now
--
I wrote an article on my blog where I described how I escalated Self-XSS to ATO through Quick Login. I demonstrated how I was able to send cookies to my server and how I used the Google API to read Gmail for a PoC.
The article link is: https://script.hashnode.dev/self-xss-to-ato-via-site-features