Increase your chances of passing the OffSec OSWA exam questions on your first try. Practice with our free online OSWA exam mock test designed to help you prepare effectively and confidently.
You find:
POST /upload
{"filename":"invoice.pdf","path":"/users/123/docs/"}
Which exploitation demonstrates maximum impact?
You need to exploit a CSRF in a stock trading platform. The target action is:

The app accepts requests only from Origin: https://trading.local.
Which CSRF payload is most likely to bypass defenses?
You want to discover hidden parameters influenced by a CDN.
What is the best initial approach in Burp?
Developer says “we sanitize server output.” You suspect a DOM sink. Which minimal probe best surfaces a client-side sink without server reflection?
You want to discover hidden parameters influenced by a CDN.
What is the best initial approach in Burp?
© Copyrights FreeMockExams 2026. All Rights Reserved
We use cookies to ensure that we give you the best experience on our website (FreeMockExams). If you continue without changing your settings, we'll assume that you are happy to receive all cookies on the FreeMockExams.