Bug Bounty POC | XSS

  Рет қаралды 2,251

ToruZ_

ToruZ_

3 ай бұрын

Disclaimer: This video is for strictly educational and informational purpose only. I own all equipment used for this demonstration. Hacking without permission is illegal so always ensure you have proper authorization before using security tools in any network environment. thanks.

Пікірлер: 25
@RHYru9.
@RHYru9. 7 күн бұрын
Wah medan bang🎉
@mistDexploit
@mistDexploit 28 күн бұрын
keep going I like your Channel it's great
@rifaelsitorus5211
@rifaelsitorus5211 25 күн бұрын
Thanks!
@erroreboy19mask20
@erroreboy19mask20 8 күн бұрын
nice, but how u know ,how u think , that after the error u need to login then try it again? And how it could happen only by writting administrator, then the error bypassed ? And why u wrote Administrator instead somthing else? Doese it work on every programms???
@rifaelsitorus5211
@rifaelsitorus5211 8 күн бұрын
I don't know what actually happened on the backend, but when I logged in with the username 'administrator' and a random password, I could access that last endpoint It doesn't work to another program
@erroreboy19mask20
@erroreboy19mask20 8 күн бұрын
@@rifaelsitorus5211 nice , ilike to know how u think it could success, iam interested to know this iq haha
@kenjikakashi
@kenjikakashi 18 күн бұрын
Can I ask how you managed to find or know endpoints on websites?
@martindinchev5363
@martindinchev5363 17 күн бұрын
Dir bruteforce, burp scan, sometimes there is in js files, source code , documentation, etc.
@Hackerone1444
@Hackerone1444 26 күн бұрын
No waf on that site ?
@rifaelsitorus5211
@rifaelsitorus5211 25 күн бұрын
there's Cloudflare on that site I bypassed with payload 2x encoding
@imamuddinalmustaqim8138
@imamuddinalmustaqim8138 17 күн бұрын
Proses bypass dg otentikasinya, pdhl itu kyknya juga masuk bug broken authentication
@rifaelsitorus5211
@rifaelsitorus5211 17 күн бұрын
@@imamuddinalmustaqim8138 itu juga udah saya report bg, yah cuman ga ada impactnya bg soalnya saya ga bisa gunain fitur dashboardnya
@dheikudeden7933
@dheikudeden7933 15 күн бұрын
Kalo ga di encode gabisa kah bang?
@rifaelsitorus5211
@rifaelsitorus5211 15 күн бұрын
@@dheikudeden7933 ga bisa bg, ada WAF nya
@firzainsanudzaky3763
@firzainsanudzaky3763 2 ай бұрын
itu bukannya bisa ambil cookies admin? tapi hadiahnya kok cuma $150 padahal udah sampe takeover
@rifaelsitorus5211
@rifaelsitorus5211 Ай бұрын
Mungkin kemarin saya jelasinnya kurang jelas kali yah
@imamuddinalmustaqim8138
@imamuddinalmustaqim8138 17 күн бұрын
btw ini di platform hackerone kah?
Open Redirect and How to Find It | Hacking Bug Bounty
13:36
Ryan John
Рет қаралды 9 М.
Smart Sigma Kid #funny #sigma #comedy
00:25
CRAZY GREAPA
Рет қаралды 38 МЛН
Slow motion boy #shorts by Tsuriki Show
00:14
Tsuriki Show
Рет қаралды 5 МЛН
Looks realistic #tiktok
00:22
Анастасия Тарасова
Рет қаралды 104 МЛН
Where People Go When They Want to Hack You
34:40
CyberNews
Рет қаралды 1,3 МЛН
The Beginner's Guide to Blind XSS (Cross-Site Scripting)
21:21
I SCANNED EVERY BUG BOUNTY PROGRAM
20:01
NahamSec
Рет қаралды 12 М.
How do hackers hide themselves? - staying anonymous online
11:55
Grant Collins
Рет қаралды 1,3 МЛН
Easiest Vulnerabilities  in Bug Bounty
4:16
Ryan John
Рет қаралды 10 М.
Smart Sigma Kid #funny #sigma #comedy
00:25
CRAZY GREAPA
Рет қаралды 38 МЛН