No video

Hunting IDOR with Z-winK (Part 2)

  Рет қаралды 27,850

Bugcrowd

Bugcrowd

Күн бұрын

Welcome to the fifth piece in Bugcrowd's LevelUpX series! Our speaker in the series is Z-winK. In this presentation, Z-winK will build on his latest series and will take you through a deeper dive into hunting IDOR (Insecure Direct Object Reference) for big dollars.
Want to get involved?
We’re always looking for researchers and hackers like you who have tips, tricks, and skills that you want to share with the community! If you have any questions, or would like to participate with LevelUpX, please reach out to researcher.marketing@bugcrowd.com

Пікірлер: 36
@kittoh_
@kittoh_ 9 ай бұрын
This is one of the few videos that is legitimately teaching actual knowledge. Hoping his channel would come back.
@ciconid
@ciconid 5 ай бұрын
Great video!!! Loved the phrase "It doesn't require rocket surgery" :)
@wardellcastles
@wardellcastles 2 жыл бұрын
Great video! In my research into hacking APIs, rarely do I find IDs in the GET request. If I see any ids they are highly encoded in the cookie. What do you do when you see this?
@CodingQuan
@CodingQuan Жыл бұрын
One of the cleanest easy to understand videos on the topic!! 💯Bravo
@haanrey
@haanrey Жыл бұрын
I like when ryan reynolds himself teachers IDOR !! Just Awesome !!
@CodeAcademia00
@CodeAcademia00 Жыл бұрын
Thank you man , thats so amazingly helpful ❤
@techguru5230
@techguru5230 Жыл бұрын
where is part1
@ZaG-yo3fd
@ZaG-yo3fd Жыл бұрын
Great explanation! Thanks Z-winK😁🙌✌💪
@diegopirela9808
@diegopirela9808 2 жыл бұрын
thank for information bro you are great
@birch8005
@birch8005 2 жыл бұрын
Z-winK, when you are testing for idor, which are not numerical values can you irritate over the list not exposing sensitive information?🤔
@modmah7191
@modmah7191 2 жыл бұрын
thanks for the amazing video! please make more content about another vulnerabilities.
@nikeshrajbanshi647
@nikeshrajbanshi647 2 жыл бұрын
very helpful video
@shuvamadhikari2662
@shuvamadhikari2662 2 жыл бұрын
Awesome video 😄 ❤.
@extrabgmi2788
@extrabgmi2788 2 жыл бұрын
very very gooood, thaaankss maan
@tayyabch2868
@tayyabch2868 2 жыл бұрын
Nice tutorial. I have been having content issues with my hmdi connected speaker and subwoofer. No soft is coming through, still coming out of
@robot67799
@robot67799 Жыл бұрын
Thank-you ✨
@aliuzun8885
@aliuzun8885 6 ай бұрын
Ty
@robot67799
@robot67799 Жыл бұрын
26:51 Damn, that's cool
@user-ey5ob2ow7y
@user-ey5ob2ow7y 9 ай бұрын
Where is part 1 plz
@prabuinet
@prabuinet Жыл бұрын
where is part 1
@andrewalba369
@andrewalba369 2 жыл бұрын
project a lot because I've been working on other stuff (and being lazy lol). Also, I had been facing a recurring problem of content dropouts in
@StephenOgu
@StephenOgu 2 жыл бұрын
Favorite bugs 🐛
@WaseemAkram-kx7tq
@WaseemAkram-kx7tq 2 жыл бұрын
Where is first part ?
@EktuTechy
@EktuTechy 2 жыл бұрын
In his own channel
@imosolar
@imosolar 10 ай бұрын
Please what about the cookie swap with accounts
@gitanshgulati1732
@gitanshgulati1732 2 жыл бұрын
I procrastinated for 6 years
@sharifulislamshupol8364
@sharifulislamshupol8364 2 жыл бұрын
What is this site/ others? How to works in this site? plz help me.
@UK-TECH-
@UK-TECH- 2 жыл бұрын
The GMS that you use here is completely different softing than the one I use even though I'm using tNice tutorials exact software, why is tNice tutorials?
@ArSiddharth
@ArSiddharth 2 жыл бұрын
I want to start bug bounty... And I just don't wanna start, I also want to find bugs, So first I have to learn then I will do this so where do i start learning.
@wardellcastles
@wardellcastles 2 жыл бұрын
Portswigger Web Academy is a good place to start.
@haksting
@haksting 2 жыл бұрын
@@wardellcastles +1
@thewholeworldblurred
@thewholeworldblurred Жыл бұрын
All his videos are gone
@ahmedrumble
@ahmedrumble Жыл бұрын
Why ?!
@Aditya-vv3sq
@Aditya-vv3sq 2 жыл бұрын
!
@EhsanEnglishCare2000
@EhsanEnglishCare2000 2 жыл бұрын
lmao XDDD
@samindunimsara
@samindunimsara Жыл бұрын
If you saw api/detaback/?ad_id=1234577
Live Bug Bounty Hunting a Hackerone target
42:14
Root Access Hacks
Рет қаралды 2,6 М.
Prank vs Prank #shorts
00:28
Mr DegrEE
Рет қаралды 9 МЛН
ROLLING DOWN
00:20
Natan por Aí
Рет қаралды 11 МЛН
Кадр сыртындағы қызықтар | Келінжан
00:16
Finding Your First Bug: Manual IDOR Hunting
33:28
InsiderPhD
Рет қаралды 76 М.
How Hackers Move Through Networks (with Ligolo)
20:01
John Hammond
Рет қаралды 266 М.
Malware development 101: Creating your first ever MALWARE
28:00
Leet Cipher
Рет қаралды 318 М.
How do hackers hide themselves? - staying anonymous online
11:55
Grant Collins
Рет қаралды 1,4 МЛН
An IDOR Vulnerability on INSTAGRAM! 49500$ Rewarded!
8:01
Tech Raj
Рет қаралды 76 М.