Cookie-based Slack enumeration is likely broken
cdanis opened this issue · 1 comments
cdanis commented
Sometime in the past week, Slack seems to have drastically changed the formatting of the "login to other slacks" page that is displayed when you access a Slack you don't have access to (like slackpirate-donotuse.slack.com
). Now, instead of the other Slacks being actual HTML entities, they seem to be created by Javascript.
I updated my re-implementation of this technique like so: cdanis/emojifs@95190f9