poc for Cross-Origin Resource Sharing (CORS) Misconfiguration Allowing Unauthorized Data Access

Поділитися
Вставка
  • Опубліковано 27 жов 2024

КОМЕНТАРІ • 43

  • @shreya_1029
    @shreya_1029 2 місяці тому

    👏👏👏

  • @CyberNinja-p1t
    @CyberNinja-p1t 2 місяці тому

    have you ever get bounty for CORS?

  • @youneszar5431
    @youneszar5431 Місяць тому

    Even if you try it, you can't what is forbidden is forbidden anyone can reachb that type js files

  • @hacksys
    @hacksys  4 місяці тому +2

    SET YOU VIDEO SPEED 1.25x to 1.5x

  • @DarkknightSoldier
    @DarkknightSoldier Місяць тому

    first of all they will accept or not cors vulnerability if accept how much bounty they will get

    • @hacksys
      @hacksys  Місяць тому

      It's depends bro Bcz Web have many subdomains you want find effective subdomains for that they pay bounty minimum 500$

  • @TSNINJA20
    @TSNINJA20 3 місяці тому

    Hey can i know why you skipped that middle part and you used that whole methodology right *?* Btw Great content 👍❤

    • @hacksys
      @hacksys  3 місяці тому +2

      I have some lag problems in video, then I decided to assemble new system with fast working,when they done I will make better quality contents❤️

    • @TSNINJA20
      @TSNINJA20 3 місяці тому

      @@hacksys And you used the same METHODOLOGY brother *?* Mentioned in notepad. I really liked that's why asking 😊🧡

  • @razmjumehdi9069
    @razmjumehdi9069 2 місяці тому

    Thanks a lot bro. That's really amazing 🙏🙏👏👏👏👏👏

  • @Bl00dyRobin
    @Bl00dyRobin 28 днів тому

    You use tool automatised forbidden in the program :)

  • @damnn_motivation
    @damnn_motivation 12 днів тому

    Why it's mark as p5

    • @studiospan6426
      @studiospan6426 11 днів тому

      posted by wanna be hackers that's why

  • @sukremez1870
    @sukremez1870 3 місяці тому

    hello im new to this ,i still dont get it what you do with this vurn at the end of video, is it just retrieve web resource from file.html? whats the effect?

    • @hacksys
      @hacksys  3 місяці тому

      Okey,,, stay with us?!!

    • @sukremez1870
      @sukremez1870 3 місяці тому

      @@hacksys no i mean does the vurn only to retrieve js that dont contain any good information?

  • @darkmix4192
    @darkmix4192 3 місяці тому

    Where you get, put in html code target link?

    • @hacksys
      @hacksys  3 місяці тому +1

      Go and see chai or coffee wala ,, I think you are under noops brother 😂 bcz this is not tea stall this is my lab and you know there tea stall is using wayback machine to hunt on previous vulnerability and here is live hacking UNDERSTAND FIRST CONTENTS AND METHODOLOGY FIRST and some people attractive them😂😂😂 ONE LINE FOR THEM IN MARATHI .. लग्न एकाच आणि नाचतात येडाभोकाच

    • @darkmix4192
      @darkmix4192 3 місяці тому

      @@hacksys Ary pakal!

    • @johnnygaming2195
      @johnnygaming2195 16 днів тому

      @@hacksysBhava💀🤣

  • @LongTruong-mj9us
    @LongTruong-mj9us 3 місяці тому +2

    oh i see not impact if impact with misconfiguration cors you need impact information user, credit card, email user, idor, but i see not impact on your video, and you not have bounty bro

    • @hacksys
      @hacksys  3 місяці тому +1

      Bro this is youtube channel for your kind information I show you pretty that's much,,,, otherwise I lose my channel 🙂

    • @LongTruong-mj9us
      @LongTruong-mj9us 3 місяці тому

      @@hacksys yeh bro i know but i tell you can learning new bug because i see cross-origin not good, if i dev web i see bug misconfiguration cors. i will hidden all information in location have bug cors yeh i you have bug but not impact

  • @pentester_s33nu
    @pentester_s33nu 3 місяці тому +1

    Appreciated❤

  • @studyrelaxwithme4564
    @studyrelaxwithme4564 3 місяці тому

    At 11:40 in the right seems that you have a nuclei Scan. What command did you used for that?

  • @zedvn3792
    @zedvn3792 4 місяці тому

    Can you share with me the commands you used in the video?
    You keep switching tabs, making me confused as to what you did
    Thanks a lot

    • @hacksys
      @hacksys  4 місяці тому

      Join telegram channel script and tools are there link the discription

    • @zedvn3792
      @zedvn3792 4 місяці тому

      @@hacksys I joined the channel and got nothing but this video link
      What I need are the commands you used in this video and I couldn't find it in your channel

    • @hacksys
      @hacksys  4 місяці тому

      @@zedvn3792 bro wait for new video

  • @ITX-B
    @ITX-B 2 місяці тому

    Thanks bro

  • @garrinormanivannacov370
    @garrinormanivannacov370 4 місяці тому

    bounty ?

  • @lifetutorials4495
    @lifetutorials4495 2 місяці тому

    Did u get paid for this bug? Ty for video friend

    • @hacksys
      @hacksys  2 місяці тому +1

      2 digit $

    • @lifetutorials4495
      @lifetutorials4495 2 місяці тому

      @hacksys I respect the answer I'll be subbing you.

    • @bug_artist4736
      @bug_artist4736 23 дні тому

      @@lifetutorials4495 i think he lying
      🤣