M
M
Muxee4ka2020-10-28 19:04:02
Python
Muxee4ka, 2020-10-28 19:04:02

How to get Ajax-Token for authorization on the site?

Good day. Recently, I can not get authorization on the tele2 website using a post-request. When sending a post request, in addition to the phone number, the headers are passed, among other things, x-ajax-token and X-csrf-token.
5f99964e62677438437199.jpeg
X-csrf-token is explicitly present in the code of the page https://nnov.tele2.ru/lk , but I still haven’t figured out where it comes from x-ajax-token.
5f9995e0546d9801110461.png
Perhaps this is some data associated with a specific phone number, encrypted using SHA256. From observations, substituting the x-ajax-token received by the sniffer into the post-request for a specific number, it works, for the rest it does not .... Any ideas and advice?

Answer the question

In order to leave comments, you need to log in

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question