Hacksplaining
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance
Sign Up
Log In
FeaturesLessonsEnterpriseThe BookOWASP Top 10PCI Compliance Sign Up Log In

Open Redirects

To make it less obvious what he is doing, he encodes the redirect parameter, and adds some superfluous parameters to the query string.

www.example.com?_g=DernKFjelgnne&vid=iguana-party&referrer=email&next=http%3A%2F%2Fwww.haxxed.com
Mal the hacker

To make it less obvious what he is doing, he encodes the redirect parameter, and adds some superfluous parameters to the query string.

Lessons
Glossary
Terms and Conditions
Privacy Policy

© 2026 Hacksplaining Inc. All rights reserved. Questions? Email us at support@hacksplaining.com