Black Hat Bash: Bash Scripting for Hackers and Pentesters (Bonus: GraphQL and Drone hacking)

  Рет қаралды 48,914

David Bombal

David Bombal

Күн бұрын

Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: Brilliant.org/DavidBombal
I interview Dolev Farhi and Nick Aleks - the authors of Black Hat Bash and Black Hat GraphQL. Why should you learn either of these? Good reasons including $50K bug bounties :)
// Books //
Black Hat Bash:
USA: amzn.to/3JebZWJ
UK: amzn.to/3PXnk1i
Black Hat GraphQL:
USA: amzn.to/43Y3Ork
UK: amzn.to/3xtle2J
Hacking API’s by Corey J Ball: amzn.to/3TQnp89 US and amzn.to/3vXYQxX UK
// Dolev Farhi’s SOCIAL//
GitHub: github.com/dolevf
X: x.com/dolevfarhi
// Nick Aleks’ SOCIAL //
X: x.com/nick_aleks
LinkedIn: / nick-aleks-2b35389
GitHub: github.com/nicholasaleks
// Source LINK //
github.com/nicholasaleks/Damn...
// KZfaq videos REFERENCE //
Free API Hacking course!: • Free API Hacking course!
Free Hacking API courses (And how to use AI to help you hack): • Free Hacking API cours...
// David's SOCIAL //
Discord: / discord
X: / davidbombal
Instagram: / davidbombal
LinkedIn: / davidbombal
Facebook: / davidbombal.co
TikTok: / davidbombal
KZfaq: / @davidbombal
// MY STUFF //
www.amazon.com/shop/davidbombal
// SPONSORS //
Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com
// MENU //
00:00 - Coming up
01:44 - Brilliant Ad
04:12 - Intro
04:23 - About Black Hat Bash
08:13 - How the book came about
10:40 - Writing the book
15:19 - Tips for writing a book
19:10 - No Starch Press
19:56 - How long have you been hacking?
20:40 - About GraphQL
25:32 - How did the book help?
27:14 - What is GraphQL?
31:31 - History of GraphQL
34:07 - How do I get started?
37:44 - Directive overloading
40:38 - GraphQL end
42:06 - Implementing Black Hat Bash
45:45 - Where do you focus?
47:30 - Can I make money?
50:00 - Zero days
54:41 - Advice for hackers
55:53 - About the labs
01:00:42 - Learning the labs
01:02:08 - Is the book for beginners?
01:07:23 - Using vs making tools
01:10:57 - The book is a great tool
01:14:00 - Writing code raises the ceiling
01:14:55 - What is your favourite part of the book?
01:17:48 - Learn the basics
01:20:56 - Put in the work
01:25:22 - Fun labs
01:27:42 - When is the book coming out?
01:28:30 - Where can we buy it?
01:29:10 - Talk to us
01:35:06 - Drone Hacking
bash
black hat bash
graphql
vim
api
hacking api
api hack
black hat graphql
no starch
no starch press
osint
hack
hacking
pentesting
ethical hacking
penetration testing
black hat python
white hat python
grey hat python
gray hat python
cyber security
kali linux
ethical hacking
python programming
penetration testing
ethical hacker
python for hacking
python full course
black hat book review
how to hack
cyber security course
hacking books
computer hacking
learn black hat python
python tutorial
cyber security career
cyber security analyst
python hacker
python hacking course
python hacking tools
scapy
hack python code
hack python book
python hack wifi
Disclaimer: This video is for educational purposes only.
Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
#bash #linux #kalilinux

Пікірлер: 101
@davidbombal
@davidbombal Ай бұрын
Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: Brilliant.org/DavidBombal I interview Dolev Farhi and Nick Aleks - the authors of Black Hat Bash and Black Hat GraphQL. Why should you learn either of these? Good reasons including $50K bug bounties :) // Books // Black Hat Bash: USA: amzn.to/3JebZWJ UK: amzn.to/3PXnk1i Black Hat GraphQL: USA: amzn.to/43Y3Ork UK: amzn.to/3xtle2J Hacking API’s by Corey J Ball: amzn.to/3TQnp89 US and amzn.to/3vXYQxX UK // Dolev Farhi’s SOCIAL// GitHub: github.com/dolevf X: x.com/dolevfarhi // Nick Aleks’ SOCIAL // X: x.com/nick_aleks LinkedIn: ca.linkedin.com/in/nick-aleks-2b35389 GitHub: github.com/nicholasaleks // Source LINK // github.com/nicholasaleks/Damn-Vulnerable-Drone // KZfaq videos REFERENCE // Free API Hacking course!: kzfaq.info/get/bejne/edGGqaVm3NW1goE.html Free Hacking API courses (And how to use AI to help you hack): kzfaq.info/get/bejne/isl9g8JeyNKxcaM.html // David's SOCIAL // Discord: discord.com/invite/usKSyzb X: twitter.com/davidbombal Instagram: instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal KZfaq: www.youtube.com/@davidbombal // MY STUFF // www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 00:00 - Coming up 01:44 - Brilliant Ad 04:12 - Intro 04:23 - About Black Hat Bash 08:13 - How the book came about 10:40 - Writing the book 15:19 - Tips for writing a book 19:10 - No Starch Press 19:56 - How long have you been hacking? 20:40 - About GraphQL 25:32 - How did the book help? 27:14 - What is GraphQL? 31:31 - History of GraphQL 34:07 - How do I get started? 37:44 - Directive overloading 40:38 - GraphQL end 42:06 - Implementing Black Hat Bash 45:45 - Where do you focus? 47:30 - Can I make money? 50:00 - Zero days 54:41 - Advice for hackers 55:53 - About the labs 01:00:42 - Learning the labs 01:02:08 - Is the book for beginners? 01:07:23 - Using vs making tools 01:10:57 - The book is a great tool 01:14:00 - Writing code raises the ceiling 01:14:55 - What is your favourite part of the book? 01:17:48 - Learn the basics 01:20:56 - Put in the work 01:25:22 - Fun labs 01:27:42 - When is the book coming out? 01:28:30 - Where can we buy it? 01:29:10 - Talk to us 01:35:06 - Drone Hacking bash black hat bash graphql vim api hacking api api hack black hat graphql no starch no starch press osint hack hacking pentesting ethical hacking penetration testing black hat python white hat python grey hat python gray hat python cyber security kali linux ethical hacking python programming penetration testing ethical hacker python for hacking python full course black hat book review how to hack cyber security course hacking books computer hacking learn black hat python python tutorial cyber security career cyber security analyst python hacker python hacking course python hacking tools scapy hack python code hack python book python hack wifi Disclaimer: This video is for educational purposes only. Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! #bash #linux #kalilinux
@minddoctor4687
@minddoctor4687 Ай бұрын
😊😊
@iblackfeathers
@iblackfeathers Ай бұрын
many times i had to live off the land/lan and re-invent the wheel in order to make my own tools due to security policies. bash and python and perl and other stuff already installed or present in the environment have helped a lot in tailoring my workflows. it is awesome someone is covering this specific topic and dedicating an entire book on it. lots of this is cobbled together from various sources since there wasn't a single source for it.
@davidbombal
@davidbombal Ай бұрын
Great comment. Thank you for sharing. I think it's high time that this book was written 😀
@austinebangura2249
@austinebangura2249 Ай бұрын
Thanks to David and all co-operative members who share things with him, we really appreciate them.
@davidbombal
@davidbombal Ай бұрын
You're welcome!
@Alain9-1
@Alain9-1 Ай бұрын
i've been waiting for bash scripting for years, finally uploaded, thanks
@davidbombal
@davidbombal Ай бұрын
The book is out soon. I think it's time that I create videos about this 😀
@Alain9-1
@Alain9-1 Ай бұрын
@@davidbombal I can't wait to buy the book, and no one better than you to make videos for us and explain it , thank you again for the efforts
@MyDancingirl
@MyDancingirl 24 күн бұрын
Excellent interview, loads of insights to hardening graphQL APIs. Thanks for sharing 😊
@Iicence
@Iicence Ай бұрын
thank you for everything david
@davidbombal
@davidbombal Ай бұрын
You're welcome!
@zayanaamir885
@zayanaamir885 Ай бұрын
You're an ocean of knowledge David
@davidbombal
@davidbombal Ай бұрын
Thank you. But my guests are the ones sharing the knowledge here 😀
@taybtaybe
@taybtaybe Ай бұрын
I am from Afghanistan and David is the best teacher I have seen❤❤❤❤
@davidbombal
@davidbombal Ай бұрын
Thank you! I appreciate that 😀
@antospin4004
@antospin4004 Ай бұрын
Hi David, thank you very much for always being on the side of who wants to learn. Is there any book you can recommend which covers this same topic but in windows OS prospective? We should not forget that the majority of "common" people's devices are composed of Windows machines and Android phones. Also, I didn't understand if the deone hacking demo will be part of the book and if not where to find it, thank you very much!!
@georgecostanza7990
@georgecostanza7990 Ай бұрын
Thanks David, youre brilliant man!
@sassywoocooo
@sassywoocooo Ай бұрын
hi dad, this came in clutch. i really needed to sharpen my skills with bash. it's about time i stopped using it only for running commands. one could automate many things with bash scripting and it is not even so hard to do that.
@iMshadab
@iMshadab 18 күн бұрын
Thank you sir for these priceless videos, really helps me know what do to what to learn
@Abduselam.m
@Abduselam.m Ай бұрын
Thanks so much David amazing topic
@davidbombal
@davidbombal Ай бұрын
You're very welcome!
@anshulnamdev9363
@anshulnamdev9363 Ай бұрын
Meanwhile me who's waiting for David and these 2 other dudes to teach me black hat bash basics and scripts,and how to make them °_°
@bharatiyarailbyaditya3526
@bharatiyarailbyaditya3526 Ай бұрын
Going to learn this right now
@DNETREAPER
@DNETREAPER Ай бұрын
Really enjoy your videos thx Rex
@Unique_Jasse_user-explore
@Unique_Jasse_user-explore Ай бұрын
David always upload knowledgeable and valuable contant ❤❤
@777Nardo
@777Nardo 27 күн бұрын
Wowwww and here i wanted to get it, bash sounds exciting. Great video David. Thank you!
@duncanochieng2462
@duncanochieng2462 23 күн бұрын
"I wanna start learning the technology,,, not troubleshooting the labs"🤣How many times have I done that?... timeless😂
@gamereditor59ner22
@gamereditor59ner22 Ай бұрын
This is cool!
@toxyl3915
@toxyl3915 Ай бұрын
I'd also say there's a lot of room to uncover improperly secured graphql endpoints since its flexibility can make it easy for developers to lose the overview of how all the different parts can and do interact with one another (on the API side as well as on the code side the API interacts with)
@SnowTheParrot
@SnowTheParrot Ай бұрын
@NickAleks owes me a signed copy for this video ! So glad this happened. Great video David and cant wait to read the book! Thanks Nick and Dolev!
@NickAleks
@NickAleks Ай бұрын
Yes I do!
@Betruet
@Betruet Ай бұрын
great interview thanks
@luddekn
@luddekn Ай бұрын
I'v been wanting to learn proper bash scripting for ethical hacking for a while now but have not since other studies etc, but a book is just perfect!! Was so bumbed to go to Amazon and seeing it being released October 1 (need it now!!!)😅But it takes time to make a great book, can't wait, going to be great.
@khanabdulmuhammad5625
@khanabdulmuhammad5625 Ай бұрын
Black Hat Bash course let's goo
@davidbombal
@davidbombal Ай бұрын
I think I should create some videos about it 😀
@tonyb9864
@tonyb9864 Ай бұрын
Can't wait for the Black Hat Bash book!
@Samirfromthefuture
@Samirfromthefuture Ай бұрын
GOOD TIMING
@davidbombal
@davidbombal Ай бұрын
Happy to hear that 😀
@Om-vh3zc
@Om-vh3zc Ай бұрын
Thank You Sir Great knowledge....🙏
@HalukCandan-xh6zl
@HalukCandan-xh6zl Ай бұрын
David please do a guide on how to turn Kali into an overly paranoid tails os (including usb traceless mode and cold booting blue team case to make it lose traces).
@Abc-sl1nf
@Abc-sl1nf Ай бұрын
Thx, giving it a try.
@steve0ro
@steve0ro Ай бұрын
Great video! But the real question is, when will you have ippsec on here?!
@Roberrrrtttt17
@Roberrrrtttt17 Ай бұрын
Thank you for all the content you put here, David! Because of you and your clips i've got my first job in cybersecurity, learning more from you than i did in 3 yrs of college. Greetings from Eastern Europe! 🫡
@davidbombal
@davidbombal Ай бұрын
Fantastic! Well done! Very happy to hear that I've helped you in your journey! 😀
@GiC7
@GiC7 Ай бұрын
Thanks
@ProfessorLinux
@ProfessorLinux 8 сағат бұрын
Love this content. 🔥🔥
@deanhaycox
@deanhaycox Ай бұрын
Enjoyed the vidoe as always :) the book is pretty hefty though at nearly £50
@lptechCT
@lptechCT Ай бұрын
I am looking forward for the book, the bash courses all there just show what the command does but do not apply to a real world examples. ✌️
@yurilsaps
@yurilsaps Ай бұрын
Bash demos please!
@Talking-nn8sq
@Talking-nn8sq Ай бұрын
Hello, dear Mr. Bumble. ❤ Can you please post a picture of your bookshelf? I want to see the books you are reading.
@savagepro9060
@savagepro9060 Ай бұрын
This is NOT the time to be . . . BASHFUL!
@JamesJohnAgar
@JamesJohnAgar Ай бұрын
You will have to get that guy back for the Drone hacking simulator for more information. Haven't heard much about this recently.
@Mudaseer44
@Mudaseer44 Ай бұрын
Hey david.... I've recently downloaded an app that is not available on play store, after that something is running background and downloading , many advertisements are coming on the screen , for every 10 to 15 mins i am finding an app is running background .After noticing this i've deleted the downloaded application , but it is still the same what do i need to do ? Mobile name: samsung galaxy m12
@NatteeSetobol
@NatteeSetobol Ай бұрын
If you can't write a book like me or teach it to someone, write a blog! It really helps in the learning process even if you are a bad writer like myself.
@carsonjamesiv2512
@carsonjamesiv2512 Ай бұрын
COOL VIDEO🎉
@Shooter_Mcgavin69
@Shooter_Mcgavin69 Ай бұрын
Someone was trying to log into my Amazon account. I phoned amazon. And was told to reset my password and that was all. . . What would u guys do?
@dreamybull1509
@dreamybull1509 26 күн бұрын
whats the difference between the early access edition & the regular edition?
@srijands123
@srijands123 10 күн бұрын
Early access edition has only few chapters. Think 4? Have to check again. Regular edition will have a lot more. Like all of it. Edit: 5/13.
@cyberdevil657
@cyberdevil657 Ай бұрын
Hi David
@mrcvry
@mrcvry Ай бұрын
They are so busy writing the book that they are not on Mastodon yet. 😂
@gorge5412
@gorge5412 27 күн бұрын
Plz edit out the soaring egoistical flights, e.g , ~05:10.
@goowawa
@goowawa Ай бұрын
US based Amazon links would be nice
@user-jo4ko7si6s
@user-jo4ko7si6s Ай бұрын
thanks david you saved me 1 week of searching for bash scripting
@yassersaied7279
@yassersaied7279 Ай бұрын
Thanks David for the amazing efforts … just hoping that the videos not to exceed the 60 min long…
@faizankhd
@faizankhd Ай бұрын
how to create vulnerable labs to improve our skills
@sargismartirosyan9946
@sargismartirosyan9946 Ай бұрын
Finelly bash scripting BRO DUCKING FINALLY YESSSSS
@Talking-nn8sq
@Talking-nn8sq Ай бұрын
I am one of your invisible fans 👋.
@slick95112
@slick95112 Ай бұрын
David secretly works for No Starch Press.
@davidbombal
@davidbombal Ай бұрын
😂 If only they actually paid me .... I like their books and their focus on cybersecurity. Any other authors you want to see on the channel (from other publishers)?
@Talking-nn8sq
@Talking-nn8sq Ай бұрын
I wrote a comment to you on Twitter, but you didn't reply.
@Talking-nn8sq
@Talking-nn8sq Ай бұрын
Please , you answer me.
@TexasBig
@TexasBig Ай бұрын
****I need a Neurologist to install a micro c input in my skull.
@interferonrecon8162
@interferonrecon8162 Ай бұрын
David, are you a Knight?
@ComicusFreemanius
@ComicusFreemanius Ай бұрын
I'm four years into C#, please don't make me learn python.
@hetmanfoko
@hetmanfoko 26 күн бұрын
Sincerely, learn haskell /j but seriously, python is really useful (and pretty easy in syntax), while having LOTS of additional packages, it's definitely worth learning alongside c#.
@ComicusFreemanius
@ComicusFreemanius 25 күн бұрын
@@hetmanfoko I know you're right, I'm just so burnt out. Things that should only take me a day end up taking me a week or longer and I really have to do something about it.
@savagepro9060
@savagepro9060 Ай бұрын
Bash Scripting vs Shell Scripting? 🤔🤨
@WhiteDeVil3
@WhiteDeVil3 Ай бұрын
Are you referring to the fact that you can use a different language than Bash for shell scripting?
@savagepro9060
@savagepro9060 Ай бұрын
@@WhiteDeVil3 uh, actually I was just curious if they ARE different, NEWBIE here
@WhiteDeVil3
@WhiteDeVil3 Ай бұрын
@@savagepro9060 well then there's your answer mate, "bash scripting" implies usage of specifically Bash to have the shell do something, shell scripting - you get the point, you can use Python for shell scripting. Hope that cleared things up a bit.
@savagepro9060
@savagepro9060 Ай бұрын
@@WhiteDeVil3 Yep! Thanks
@iblackfeathers
@iblackfeathers Ай бұрын
bash makes it clear on syntax because it vouches for what the authors are using. at times you may run into issues if you use a different shell. bash is popular enough to work in various environments and situations.
@felistarwairimu
@felistarwairimu Ай бұрын
Someone help me i have been scam
@deepanshuvashisht3165
@deepanshuvashisht3165 Ай бұрын
1st
@davidbombal
@davidbombal Ай бұрын
Thank you for your support!
@deepanshuvashisht3165
@deepanshuvashisht3165 Ай бұрын
Welcome sir 😊 actually i have to say thank you sir for providing quality content for free 😊
@MichaelDomer
@MichaelDomer 29 күн бұрын
Change your setup, the person you're looking at needs to be where your camera is. Now it looks as if you're doing something else at the same time while doing the interview, it comes across as disrespectful, as if you're watching the internet while the other guy is talking. It's stupid the way you look down the whole time, you don't see any major news station doing this, both interviewer and guest always look at the camera.
@spectralknights2
@spectralknights2 24 күн бұрын
Nobody cares, only you. And this is not a major news station.
@MrGFYne1337357
@MrGFYne1337357 18 күн бұрын
Is it just me, or does David seem like an CIA asset or Agent?, I wonder how many youtubers ARE agents? Anyways David, you give me Stan vibes (from American Dad cartoon). I like your courses and videos. I just think your an agent... for something...
@Swiftgriffy
@Swiftgriffy Ай бұрын
First🙂
@davidbombal
@davidbombal Ай бұрын
Very close!
@Swiftgriffy
@Swiftgriffy Ай бұрын
@@davidbombal so disappointed, but I really appreciate your content and thank you.
@AbdirahmanEssa
@AbdirahmanEssa Ай бұрын
Absolutely best video conversation with tech experts and I love it Thank you @davidbombal
@davidbombal
@davidbombal Ай бұрын
Thank you! Very happy to hear that!
@ageresequituresse
@ageresequituresse 18 күн бұрын
Takes way too long to get to the point in this talk.
@Talking-nn8sq
@Talking-nn8sq 29 күн бұрын
Hello, dear Mr. Bumble. ❤ Can you please post a picture of your bookshelf? I want to see the books you are reading.
@ageresequituresse
@ageresequituresse 18 күн бұрын
Takes way too long to get to the point in this talk.
Зу-зу Күлпәш.Курс (6 бөлім)
40:48
ASTANATV Movie
Рет қаралды 521 М.
skibidi toilet 73 (part 2)
04:15
DaFuq!?Boom!
Рет қаралды 32 МЛН
I PEELED OFF THE CARDBOARD WATERMELON!#asmr
00:56
HAYATAKU はやたく
Рет қаралды 33 МЛН
Next Gen Hackers protecting our world
57:39
David Bombal
Рет қаралды 91 М.
The new AI Cyber Defense  you need to know about
37:47
David Bombal
Рет қаралды 160 М.
OSCP: From FAIL to FULL points - My Top 20 Tips
25:47
Mike Gropp
Рет қаралды 6 М.
Network Chuck Hacked YouTube! Learn how RIGHT NOW!!
1:53:54
David Bombal
Рет қаралды 101 М.
Linux Networking that you need to know (Episode 3)
54:06
David Bombal
Рет қаралды 127 М.
How to be Invisible Online (and the hard truth about it)...
53:16
David Bombal
Рет қаралды 1,7 МЛН
Next Gen Hacker?
43:03
David Bombal
Рет қаралды 228 М.
Bash for Bug Bounty & Ethical Hacking | Basic Course
40:33
Ryan John
Рет қаралды 10 М.
How about that uh?😎 #sneakers #airpods
0:13
Side Sphere
Рет қаралды 9 МЛН
Распаковка айфона в воде😱 #shorts
0:25
Mevaza
Рет қаралды 1,4 МЛН
Купите ЭТОТ БЮДЖЕТНИК вместо флагманов от Samsung, Xiaomi и Apple!
13:03
Thebox - о технике и гаджетах
Рет қаралды 69 М.
Best Gun Stock for VR gaming. #vr #vrgaming  #glistco
0:15
Glistco
Рет қаралды 5 МЛН
Introducing GPT-4o
26:13
OpenAI
Рет қаралды 3,8 МЛН
Самая важная функция в телефоне?
0:27
Опросный
Рет қаралды 218 М.