Hacking Websites Built With ChatGPT

Поділитися
Вставка
  • Опубліковано 28 лис 2024

КОМЕНТАРІ • 54

  • @GudInformation
    @GudInformation 9 місяців тому +53

    Saw your biography on CRUMB, you're a legend!

    • @SHAKA-NEU-LU
      @SHAKA-NEU-LU 6 місяців тому +1

      Ha!!! I literally just saw that and came over. I’m a Electrician but I like watching channels like this

    • @cesarkaplan4495
      @cesarkaplan4495 5 місяців тому +1

      me2

  • @JoshLathamTutorials
    @JoshLathamTutorials 9 місяців тому +23

    This is a really good point on how coding is not the same as software engineering. There’s core principles you need to know before even touching the keyboard.

  • @sugarskulllyfe5890
    @sugarskulllyfe5890 Рік тому +58

    this is comical cause i can just imagine how mmany people have jumped on the chat gpt bandwagon for productivity

    • @Aurorajunior7321
      @Aurorajunior7321 9 місяців тому +4

      how may important websight do you think are made with ChatGPT lol

  • @UnfiItered
    @UnfiItered 9 місяців тому +5

    What you can also do is to open the file and force read everything instead of just the header. If any strings contain "

    • @39580xxx
      @39580xxx Місяць тому

      And then the user uses a user agent spoofing extension and proxies lol

  • @Matt-df6hz
    @Matt-df6hz 9 місяців тому +2

    PHP and security aren't usually two things that go hand in hand.

  • @MattOatesUK
    @MattOatesUK Рік тому +6

    These are all good points, apart from absolutely no one should have their uploads directory executing PHP in the server configuration, you cant really help that from the app code.

    • @codegmeister
      @codegmeister 9 місяців тому

      sorry for necropost. this is so true. still, the points are valid.

  • @emmanuelboakye1124
    @emmanuelboakye1124 Рік тому +3

    Good work👍

  • @guilherme5094
    @guilherme5094 Рік тому +2

    Really nice👍

  • @Spiderface77
    @Spiderface77 8 місяців тому

    God bless you Marcus!

  • @bravosixactual3000
    @bravosixactual3000 Рік тому +2

    I wonder if it's possible to have a CTF that have some of it's challs to be generated from GPT-4

    • @scbtripwire
      @scbtripwire Рік тому

      This immediately made me think of ChatGPT playing Capture The Flag in Unreal Tournament ('99, I'm old). Imagining ChatGPT trash-talk during a round of UT CTF made me chuckle.
      God I miss that game.

  • @SoonMrWick
    @SoonMrWick 9 місяців тому

    Have you comment on A.I. concerns or optimism? If so, can someone link?

  • @damuchinni
    @damuchinni Рік тому +1

    i have been following ur videos, i have few questions, can help to answer please, i know may be many have asked these for u before. please kindly answer these. a) what is the best OS used by Red Team? b) Is it best to setup OS on VM or on external disk? c) i hear if we setup OS on external SSD or VM it cannt access gpus if needed for brute force attack. Is it real? thanks lot in advance

  • @meriembenmustapha5424
    @meriembenmustapha5424 5 місяців тому

    Instructive !

  • @VickersStudios
    @VickersStudios 8 місяців тому

    Can you make a video on how to find anyway to hack into your website so you can fix it. I’m just starting to make html websites but I want to make sure there secure

  • @andrevenancio
    @andrevenancio Рік тому +3

    This is quite good content. It’s very interesting to see how hackers could exploit a website. I had no idea and it looks easy. Do you think that this will also be true in nowadays technology? Most places I’ve worked at use nextJS which runs on a node server. Could you hack node server next? 🙏

    • @yeetyeet7070
      @yeetyeet7070 Рік тому +3

      oh boy, developers that don't understand the bare minimum of web attacks
      gg internet.

    • @andrevenancio
      @andrevenancio Рік тому +2

      @@yeetyeet7070 do you know the amount of different disciplines within web development? Security and backend are not my thing. Nor do I want it to be. But seems like with your reply you think a one person can make a website. Maybe for Wordpress or other equality simple things but that’s not the type of work I do.

    • @yeetyeet7070
      @yeetyeet7070 Рік тому +2

      @@andrevenancio lol xD of course one person can make a website, front-end and backend.

    • @andrevenancio
      @andrevenancio Рік тому +1

      One person sure can. I didn’t claim otherwise. I mention web development has multiple disciplines (even beyond frontend/backend) and because security, “forms”, authentication, API or databases isn’t my specialisation, I found the content of this video interesting enough to comment. Ur comment doesn’t respond to my question. But thanks for ur opinion.

    • @dynamichunter843
      @dynamichunter843 Місяць тому

      @@yeetyeet7070cool, go make a fully functional multi-national e-commerce website by yourself from scratch then. Good luck. Let me know when you’re done in 7 years.

  • @4Lulian
    @4Lulian 7 місяців тому

    this is INSANE!!

  • @iroveth6690
    @iroveth6690 Рік тому

    great video

  • @scbtripwire
    @scbtripwire Рік тому +8

    I've been following you since I heard about you back during the unfolding of your history with the FBI, but you being a software engineer is news to me. Did you get a degree in software engineering or did you mean developer? I ask just because I remember reading about you as a coding savant with no mention of your formal (e.g. University) educational achievement, and Engineer is a legally protected title like Doctor. This isn't in any way meant negatively, I'm just curious. 😊

    • @MalwareTechBlog
      @MalwareTechBlog  Рік тому +11

      It's not legally protected

    • @scbtripwire
      @scbtripwire Рік тому +3

      @@MalwareTechBlog Ah, I just looked it up because that didn't sound correct to me. (In many states, boy I'm glad to be Canadian - it's less complicated here) it's protected if you're licensed and certified, holding the title Professional Engineer and working a public sector job, whereas if you work in the private sector you're covered under a historical exemption claus, I understand now! Thanks for your reply Marcus, I learned something new! 😊

    • @v380riMz
      @v380riMz Рік тому +1

      @@scbtripwire also note that he's originally from the UK

    • @scbtripwire
      @scbtripwire Рік тому

      @@v380riMz His accent kind of gives that away. 😋 Engineer is a protected title there too though. 🙂

    • @MalwareTechBlog
      @MalwareTechBlog  Рік тому +2

      No it isn't

  • @ReverenceQ2
    @ReverenceQ2 8 місяців тому

    I want to learn coding but I'm getting old, my worry is that the rise of ChatGPT makes me think by the time I reach an entry level understanding ChatGPT will be miles beyond what I can do.

    • @TheTrollhead
      @TheTrollhead 2 місяці тому

      Its time to start HTB (Hackthebox) you can learn all you need about website penetration with modules dedicated to being like a game. Its amazing and you can use it to get certified in multiple areas that will help you not only get a job in cyber security, but also start doing some bug bounties and helping people while getting paid for it.

    • @TheTrollhead
      @TheTrollhead 2 місяці тому +1

      I feel like you're learning to run before you crawl- you wont need to use chatgpt for years and by time you can, imo it will be loads better. Just get into it if you want and dont overthink. If you're anything like me you'll have a blast (especially if you have a good amount of spare time on your hands)

  • @Elintasokas
    @Elintasokas Рік тому

    A problem for now. Soon it won't be because this GPT-4 will look like a joke in a few years.

  •  4 місяці тому

    Not the best test. Always ask chatgpt followup prompt to fix all security holes and edge cases

  • @wingdinggaster6737
    @wingdinggaster6737 9 місяців тому

    I recommend you cut your webcam so its only just you because I could barely read the Network details when you looked at those.

  • @sujeetbokil8317
    @sujeetbokil8317 Рік тому

    Always had a question, if I have an average to Below average, shall I kill myself?
    Since, I want to be into hacking. Reverse engineering, scripting, assembly, debugging and hardware phreaking seems way above my IQ's league

  • @wesleyryanmulombwa9087
    @wesleyryanmulombwa9087 Рік тому +1

    Banger Hoodie

  • @cedrics7374
    @cedrics7374 6 місяців тому

    Rule is, use chat gpt for ideas, use your brain to actually program

  • @raphaelmorgan2307
    @raphaelmorgan2307 9 місяців тому

    huge linux fanboy here but the ppl in the chat demanding you use linux are annoying af... y'all don't harass streamers about their tech preferences??? you're literally watching streams on youtube or twitch, don't throw stones in glass houses

  • @tonyyeehaw69
    @tonyyeehaw69 9 місяців тому

    Sorry buddy I’m just chilling lol I love it buddy I just don’t don’t know how how long I was like I was going on a walk and and then he got mad and then he threw up my feet and I got a knife lol I got it and got a lot more lol I was just going on the same way way lol I got got

    • @TheTrollhead
      @TheTrollhead 2 місяці тому

      Dont do drugs kids, also "nazi punks fuck off volume 1."

  • @WolxeFather
    @WolxeFather 9 місяців тому

    Man your a hero saved the world billions of dollars your amazing

  • @bearsaregay8389
    @bearsaregay8389 Рік тому +1

    bug hounting going to go brrrrr after all this losers start doing web apps with chat gpt