JavaScript Enumeration in practice with a live example

Поділитися
Вставка
  • Опубліковано 7 лют 2025
  • JavaScript Enumeration is a critical skill to have if you want to level up your penetration testing or bug bounty hunting game. Today, you will practice what you've learnt in the previous Javascript enumeration video.
    Download your FREE Web hacking LAB: thehackerish.c...
    Read more on the blog: thehackerish.com
    Facebook Page: / thehackerish
    Follow us on Twitter: / thehackerish
    Listen on Anchor: anchor.fm/theh...
    Listen on Spotify: open.spotify.c...
    Listen on Google Podcasts: podcasts.googl...
    Hopefully, this episode will help you overcome these hurdles and give you the tools you need to make JavaScript Enumeration less painful.

КОМЕНТАРІ • 48

  • @no1sploit529
    @no1sploit529 4 роки тому +1

    This video should not have that dislike button. Awesome. Learning new stuff everyday from your videos. I have started following you on twitter today. Thanks for your sharing. You're nice.

    • @thehackerish
      @thehackerish  4 роки тому +1

      Thanks for your kind feedback! Enjoy!

  • @abdullahmasud4073
    @abdullahmasud4073 2 роки тому

    Always looking for this kind of video. Keep uploading and don't hesitate to make long video

  • @goodboy8833
    @goodboy8833 4 роки тому +3

    I dont know why, i feel very fresh while watching this guy's video

    • @thehackerish
      @thehackerish  4 роки тому

      That's flattering, thanks for the feedback :)

  • @subhadeeproy8824
    @subhadeeproy8824 2 роки тому +2

    I mainly use automations like linkfind3r. Bt sometimes doing manual enumeration is also worth it. Nice Understanding Video👍.

  • @hackerproxy19
    @hackerproxy19 4 роки тому

    your channel videos are golden. i really like to your channel i see the lot of youtube channel but your channel one of best channel

    • @thehackerish
      @thehackerish  4 роки тому

      Oh! Thank you so much for this kind comment! It means a lot!

  • @netmouse3922
    @netmouse3922 4 роки тому +2

    This is wonderful. Thanks. Learned lot that previously unknown.

    • @thehackerish
      @thehackerish  4 роки тому +1

      I am glad you learned something new, keep up!

  • @crj7778
    @crj7778 3 роки тому

    Great information👏👏

  • @surya-ur5vv
    @surya-ur5vv 4 роки тому +1

    @thehackerish This video literaly awwsome i readed my blogs and books about the JS but your video helps me a lot

    • @thehackerish
      @thehackerish  4 роки тому +1

      Happy to help :) thanks for your feedback

    • @surya-ur5vv
      @surya-ur5vv 4 роки тому

      @@thehackerish thankyou for helping beginners
      Happy hackinh

  • @arshiyakhan6789
    @arshiyakhan6789 4 роки тому

    You are amazing, please keep up with practicals.

  • @UppaLouva
    @UppaLouva 2 роки тому

    Amazing

  • @MegaRish1234
    @MegaRish1234 4 роки тому +2

    This was so much educational. Please make more videos on chrome devtools.

    • @thehackerish
      @thehackerish  4 роки тому

      Glad it helped! Thanks for the feedback!

  • @xnl-h4ck3r
    @xnl-h4ck3r 4 роки тому

    Great video! Thanks. I look forward to seeing all the other videos on your channel

  • @robot67799
    @robot67799 3 роки тому +1

    That was helpful 😸

  • @BasketballChamp
    @BasketballChamp 3 роки тому

    Very helpful bro. Ty

  • @ashleypursell9702
    @ashleypursell9702 4 роки тому +1

    wow this was really helpful thanks so much awesome video

    • @thehackerish
      @thehackerish  4 роки тому

      I'm glad it helped you, thanks for your feedback!

  • @dohnjoe4907
    @dohnjoe4907 4 роки тому

    Great as always :)

  • @Zip7889
    @Zip7889 4 роки тому +1

    Really very helpful. Is it possible if a video can be made on how to look for DOM XSS by analyzing js files.

    • @thehackerish
      @thehackerish  4 роки тому +1

      Thanks for your feedback, I will think about it.

  • @sushantdhopat
    @sushantdhopat 4 роки тому

    Grate vedieo . You said here methodology grep the secret , api key , api endpoint etc . And other pass and jucy with manually with putting our keyword with grep command but there is different tool available for you can grep all this thing with put only js file secret , api key , password , etc. What you suggest automate tools better or manually test with you said in this vedieo.
    Thanks in advance

    • @thehackerish
      @thehackerish  4 роки тому +1

      If I understood correctly, you want a way to automate this. Well, you can use gf from tomnomnom, which I mentioned in the video. And use a shell script that you can run in a cron job.

  • @Hari-888
    @Hari-888 2 роки тому

    can you tell me the name of the music that plays towards the end of your video after 23:25

  • @goooooo9197
    @goooooo9197 4 роки тому

    To gud love u

  • @sy-gamer9556
    @sy-gamer9556 4 роки тому

    Awesome video .can you give some tips for iOS application bug bounty

  • @sample4713
    @sample4713 4 роки тому

    This is a great tutorial videos, im a new subscriber!
    how can i use linux based codes in windows?
    some people use linux as their primary, but i never seen a video where they execute burp and bug bounty in windows.

    • @thehackerish
      @thehackerish  4 роки тому

      Good point! Most of the hacking tools will need the command line. You can use Cygwin on Windows, or spin up a docker linux container in no time.

  • @goooooo9197
    @goooooo9197 4 роки тому +1

    Can you plz make a video for intermediate hackers means I stared 5 moths ago with zero knowledge about technology means I have dropped my clg so I was spending nearly 10-14 hours day learning bug bounty so in 5 months I have made gud progress means goten 10 bounty form bugcrowd and 4 form hackerone but they all were p4 and p3 form last 20 days when I decided to level up my game by finding p1 bug I failed so hard now I studying every bug deeply and giving deep dives in for p1 bug it the problem is when I learning p4 and p3 bug I was learning this so quickly and then I can find same on live website but when but now when I trying for sql injection lfi rce I not getting anything so I am getting so much demotivated because I can’t see my growth like p4 and p3 bugs so how cloud I tell myself that I learning and how should I motivate myself
    No one talk about this stuff ie moving form medium level to advance level all talk about burnout and staring bug bounty if you made i video on it will be really so useful

    • @thehackerish
      @thehackerish  4 роки тому

      Thanks for your feedback! All I can say is that you are on the right track. There is nothing you can do other than continue learning. If you love hacking so much, it will drive you. You can also engage with the community, make hacking friends and exchange knowledge to stay motivated. I hope this helps!

    • @amoh96
      @amoh96 Рік тому

      brother im beginner tell what i need to learn i know js basics and web should i start learn owasp 10 and practice ? or what ?

  • @ca7986
    @ca7986 4 роки тому

    Great video, just a suggestion please remove background music. Love listening your voice only.

    • @thehackerish
      @thehackerish  4 роки тому +1

      Thanks for the feedback. I will put a poll about the background music since I've had other who enjoyed it. Stay tuned!

    • @ca7986
      @ca7986 4 роки тому

      @@thehackerish alright thanks mate! It just a suggestion, if people wants that, then that's ok for me.😊

  • @toriyono8018
    @toriyono8018 3 роки тому

    ❤️❤️❤️❤️ 🔥🔥🔥🔥🔥🔥🙄😀☺️

  • @tanercoder1915
    @tanercoder1915 4 роки тому

    this wasn't as difficult as it sounds!

    • @thehackerish
      @thehackerish  4 роки тому +1

      Yup! Time to hack!

    • @tanercoder1915
      @tanercoder1915 4 роки тому

      @@thehackerish Don't have pro burp. Started installing scripthunter. It needs lots of modules to work properly.

    • @thehackerish
      @thehackerish  4 роки тому +1

      @@tanercoder1915 I saw it, seems that all the dependencies are go based, so if you already watched my bb methodology, you should have some :) You can also scrape javascript files using bash or python, then fetch them and continue from there.

    • @tanercoder1915
      @tanercoder1915 4 роки тому +1

      @@thehackerish right! scrape using python! may be my scrapy skills can be of use here. never thought of scraping js files only some data from sites.