web application – XSS: character displayed in the DOM

I've created an HTML page that redirects the user to a test site with an XSS vulnerability. I am able to run javascript successfully via vulnerability. However, I found that some of the characters that I use as part of the XSS attack display in the DOM. How can I hide these characters from showing in the DOM?


    
Author AdminPosted on Tags , , , , ,