Mobile (iOS/Android) Vendor: x00sec

Insecure Android WebView JavaScript bridge leaking the session token to any loaded page

The app adds a JS bridge exposing the session token to any page its WebView loads, and a deep link lets an attacker point that WebView at a page they control.

The full write-up is locked

Unlock the step-by-step write-up, screenshots and PoC file by purchasing this listing.

The app adds a JS bridge exposing the session token to any page its WebView loads, and a deep link lets an attacker point that WebView at a page they control.…

Browse the file tree freely — unlock to download.

  • webview_bridge_steal.html 0.8 KB

Mobile security labs

View all labs

No related labs for this topic yet.

Reviews & Questions

Sign in to ask a question or leave a review.

No reviews or questions yet — be the first.

Listing Details

Author
x00sec
Published
2026-09-13
Target / OS
In-app browser WebView with a @JavascriptInterface bridge, reachable via a deep link
Category
Mobile (iOS/Android)
Payout Method
No preference

Price

0.0240 BTC

≈ $1,560.00

Live Chat

Ask the seller or other buyers a question — mention someone with @handle

Sign in to join the conversation.