
This topic contains 1 reply, has 2 voices, and was last updated by B1tninja 1 week, 5 days ago.
You must be logged in to reply to this topic.
This topic contains 1 reply, has 2 voices, and was last updated by B1tninja 1 week, 5 days ago.
Sacramento County Recorder Public Index Downloader
AMA about how to snatch a CSRF token using Chrome’s Inspection console, the Network tab… Check out this tool to take a cURL and convert it to python: [https://curl.trillworks.com/](https://curl.trillworks.com/)
There are a few problems with my county’s web interface. They don’t seem to restrict the LIMIT on the SQL query on the server side.
The CSRF token doesn’t seem to expire.
The fact that you can specify what looks like maybe a column name from a table for the sort order makes me think they are just dumping that into an SQL query. Another clue is the presence of ASC and DESC.
You must be logged in to reply to this topic.
Comments