Can someone share exploit code for lab4 of session security (cross domain data stealing)?

Secondly this exploit code needs to be entered in the my site column of feedback section right?