OWASP / QRLJacking

QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on “Login with QR code” feature as a secure way to login into accounts which aims for hijacking users session by attackers.
GNU General Public License v3.0
1.33k stars 619 forks source link

Whatsapp Grabber Module: Xpath for "change_identifier" is now compatible for both Android and IOS devices #211

Closed LucaReggiannini closed 1 year ago

LucaReggiannini commented 1 year ago

Fix for issue https://github.com/OWASP/QRLJacking/issues/209 Xpath for "change_identifier" in Whatsapp Grabber Module configuration is now compatible for both Android and iOS devices. Changes tested with various Android phones, iPhone SE2 and iPhone 8.