- Upload
cookiestealer.php
to your server - Edit
cookie.php
to change$server_ip
value with your server's URL or IP with port - Go to http://IP:port/cookie.php
- cat
log.txt
to see the collected cookies
php -S ip:port
This code is based on what can be seen here: Write an XSS Cookie Stealer in JavaScript to Steal Passwords