Cross Site Scripting (XSS) tutorial for Beginners

Поділитися
Вставка
  • Опубліковано 20 січ 2025

КОМЕНТАРІ • 162

  • @Bipantheytbr
    @Bipantheytbr Рік тому +6

    Loi is our best uncle who always has surprised us with his contents.

  • @felixmilome
    @felixmilome 7 місяців тому +13

    For beginners??? Could you do one for dummies?

  • @noobintheinternet
    @noobintheinternet Рік тому +35

    Me trying to recognise which video is flipped and which video is original

    • @Motasim11
      @Motasim11 7 місяців тому

      😂😂😂😂😂😂 this took me out man

    • @noobintheinternet
      @noobintheinternet 7 місяців тому +1

      @@Motasim11 Bro I forgot I made this comment 😅

  • @comosaycomosah
    @comosaycomosah Рік тому +2

    damn son you almost have a million subscribers! your videos are on point!

  • @VickMu-t2d
    @VickMu-t2d Рік тому +5

    Hi hacker loi,,, I'm trying to setup my apache2 webserver and it isn't responding,,, it is depicting an error what could be the problem

  • @QuintessentialDio
    @QuintessentialDio Рік тому +2

    Great Video as always❤

  • @RiwazThe
    @RiwazThe 23 дні тому

    test

  • @nirbhaymishra4222
    @nirbhaymishra4222 Рік тому +6

    Very Information and Interesting
    Thanks for sharing ❤

  • @dimosthenistsirogiannis597
    @dimosthenistsirogiannis597 11 місяців тому

    Yes but you should run the xss payload to his computer for the reflected cross site scripting? How will you get the cookies from a specific person

    • @Palidon
      @Palidon 11 місяців тому

      The reflected XSS is supposed to be visited by the victim. It's up to the attacker how he delivers the payload. It could be sent via a phishing email or can be used in combination with the stored XSS

  • @laxmiprasanna4092
    @laxmiprasanna4092 11 місяців тому

    So to do XSS , the hacker needs to be already there in your computer ? Can a website from one tab attack another ?

  • @tanishhhh_7
    @tanishhhh_7 6 місяців тому

    Best hacker uncle!

  • @nonsense101
    @nonsense101 Рік тому +2

    You make it look. So easy. 😮 Mr loi. Very interesting. Keep up. The grate work. And easy to follow instructions

  • @darrbest
    @darrbest Рік тому +1

    another great one. yes you make it look so easy.

  • @shurikensage
    @shurikensage Рік тому

    You're my favourite hacker

  • @vali5310
    @vali5310 3 місяці тому +1

    how can i get that same site for me to try i cant find it

  • @WitzigLustigKomisch_TG
    @WitzigLustigKomisch_TG Рік тому

    You make verry nice Content 👍

  • @xnuvers0077
    @xnuvers0077 Рік тому +1

    Can you give me tutorial about vulnerable XST (cross site tracing) ? Method Trace is Allowed

  • @belkYT
    @belkYT 9 місяців тому

    3:45 how did you get the url

  • @learnlinuxwithmellwm
    @learnlinuxwithmellwm Рік тому +1

    Is it possible to send files to computer 🖥️ in the same network without their concern

  • @ssenyondwafred156
    @ssenyondwafred156 11 місяців тому

    Tht website had no domain name in the URL, it was using just ip Adress, can it apply to an HTTPS website?😊

  • @fn_knjxy
    @fn_knjxy 9 місяців тому

    Thanks Mr. hacker Loi keep it up❤!

  • @suzonmaruf7104
    @suzonmaruf7104 3 місяці тому

    how did you install orange hrm on kali? Please give a tutorial on that.

  • @xloyagency3985
    @xloyagency3985 Місяць тому

    really amazing video !

  • @AUselessTrader
    @AUselessTrader Рік тому

    There is a simple javascript script i made that locks the website you paste it into(only locks it for you) and you have to either refresh or close it

  • @ItzGoop
    @ItzGoop Рік тому

    Is there any way you can break into my gmail account and change its password because I’ve exhausted everything i could to recover it but i cant

  • @janekmachnicki2593
    @janekmachnicki2593 Рік тому +2

    Great tutorial Mr Loi

  • @rajeshkoneru6641
    @rajeshkoneru6641 8 місяців тому

    hello iol
    what is that orangehrm application

  • @foydoitro2830
    @foydoitro2830 Рік тому +5

    Can you hack car when breaking 1Million subscribers🥳

  • @InfixLyrics
    @InfixLyrics 9 місяців тому

    but basically, this is not kinda working now. you know, many of them use CMS for websites. Plus, parameters like ?token ?user are not taking scripts at all. it must be written in the user website for be a xss attack. if it's just tested and took as a wrong value, its over.

  • @yoshimochii
    @yoshimochii 8 місяців тому

    may I ask how did to access the site you're using?

  • @jinanezrh6175
    @jinanezrh6175 8 місяців тому

    The folder with XSS.txt where can i find it ? Thank you.

    • @x-bb5dt
      @x-bb5dt 8 місяців тому

      Write command which he wrote in the terminal, that wordlists/wfuzz/injections

  • @الوقايةخيرمنالعلاج-ظ1ق

    Please make a tutorial about gain access into phone mobile connected with same network wireless

  • @cauvang8204
    @cauvang8204 Рік тому

    how can i know these code xss line in your file xss.text??

  • @tyrelleohara-j8v
    @tyrelleohara-j8v Рік тому

    hey could u help me man
    my email password got changed by someone and i cant change it back

  • @oxy_786
    @oxy_786 Рік тому

    thats why i make sure to validate my webapp(s) query string before processing

  • @rojoroj9777
    @rojoroj9777 Рік тому

    Sir, can make videos on what are the different ways u can access to anyone's whatsapp with or without target phone. And also steps to avoid such attacks ...

  • @creaminitalt
    @creaminitalt Рік тому +2

    from what i know, like on 2010 - 2013/2015 it was so much easier to hack and ddos websites

    • @user-fj3gt2rj4e
      @user-fj3gt2rj4e Рік тому +1

      ddossing is still extremely easy for websites without cloudflare protection, which there are many, even one multithreaded script on one computer will take care of budget websites.

  • @h5e
    @h5e Рік тому

    Love you man💘

  • @13thravenpurple94
    @13thravenpurple94 Рік тому

    since this is URL manipulation, can add-ons like ClearURLs or Skip Redirect be of help?

  • @itsdknation540
    @itsdknation540 Рік тому

    I decided to respond on a new vid, but can you please help me get my old Gmail back it has my Fortnite account linked to it, and I haven't logged in in a while I don't have the password the number or nothing and I'm not logged into it anymore. im not to smart at this stuff btw

  • @ardihidayanto
    @ardihidayanto 10 місяців тому

    Hi Mr. Loi
    I really enjoy watching your videos, just got $$$$ bounty few weeks ago after watching your video about XSS.
    Can you upload a video about WEB3 vulnerabilities such as reentrancy attack etc etc? Thanks.

  • @syedsohaibhasan6358
    @syedsohaibhasan6358 Рік тому

    Mr Loi Liang Yang my best teacher

  • @AUselessTrader
    @AUselessTrader Рік тому

    I actually made snake run using only pop ups. Took a very long time

  • @ГришаФомин-о5щ
    @ГришаФомин-о5щ Рік тому

    Не плохой урок мой косоглазый друг) я увидел для себя пару полезных моментов

  • @liamhecht1092
    @liamhecht1092 Рік тому

    how did you found the parameter in the url ?

  • @dclxviclan
    @dclxviclan Рік тому

    You tutorials is the best learning , Loi, you can record full roadmap for hacker$? All road ?

  • @PrakashChAwal
    @PrakashChAwal Рік тому

    I am trying the same thing but alert dont popup.

  • @LandenMoran
    @LandenMoran Рік тому +2

    Can you please help me hacker loi, a bad hacker got my email and all my data pleas help me get it back

    • @ءءءءءءءءءءءء
      @ءءءءءءءءءءءء 11 місяців тому

      I can help, I'll just hack into ur account and change the password, and then give it to you. I just need the email.

  • @superstarvideomaker2782
    @superstarvideomaker2782 Рік тому +3

    Plz do hacking on trading site I want to understand it

  • @SahanK-u2f
    @SahanK-u2f Рік тому +2

    How does it show the script
    I mean which keys in keyboard

  • @jere2239
    @jere2239 Рік тому

    Hello sir,
    Can I please maintain your website😊.😊😊😊😊😊😊

  • @tekklov2646
    @tekklov2646 Рік тому +1

    Wow thanks for teaching us! ❤

  • @maunghtoo2804
    @maunghtoo2804 Рік тому

    How to become member

  • @AntonioMalvel
    @AntonioMalvel 6 місяців тому

    How to configure burpsuit to Firefox

  • @AbdulMalik-we3wx
    @AbdulMalik-we3wx Рік тому

    Your website is not working.
    Why???

  • @trinib1
    @trinib1 Рік тому

    how do you hide from the men in black?

  • @MohamedYNia
    @MohamedYNia Рік тому

    What do you recommend I use a VPN or a proxy?

    • @noobboy2810
      @noobboy2810 Рік тому

      Ya but web cannot be responce 👍

  • @CPH_python
    @CPH_python Рік тому

    Hi loi🔥💯

  • @Posting_911
    @Posting_911 Рік тому

    Kali Linux error can’t install

  • @socdot-x6l
    @socdot-x6l Рік тому +1

    Just Perfect, Perfect, PEEEEEEEEEEEEEERFECT .

  • @maxmanikhouth
    @maxmanikhouth Рік тому

    Can you please help me get into my gmail? I got hacked by someone and they changed my password

    • @ءءءءءءءءءءءء
      @ءءءءءءءءءءءء 11 місяців тому

      hacking into it is not that easy, I can, but giving me your email would make it easier for me.(I hope so)

  • @danishtrader4408
    @danishtrader4408 Рік тому +2

    Hi Loi Great Content, Is it possible to hack youtube, to remove suspension of an old account, without then notice?😬

  • @Loobie
    @Loobie Рік тому

    Hi, I need help to reset my gmail password.

  • @etano1701
    @etano1701 Рік тому

    How to do this with a persistent cookie

  • @user-tc9uz7zy8d
    @user-tc9uz7zy8d Рік тому +1

    Make a tutorial on how to root any android phone please

  • @Keyylogger11101
    @Keyylogger11101 3 місяці тому

    How to exploit the data in firebase

  • @dafoxlana
    @dafoxlana Рік тому

    Thank you sir

  • @issacnetero
    @issacnetero Рік тому +3

    No I'm never gonna be hacked by any ...

  • @amrzakaria5290
    @amrzakaria5290 Рік тому

    Thanks a lot.

  • @shiuthmohamed4345
    @shiuthmohamed4345 Рік тому

    one of the best of best..

  • @baeg1689
    @baeg1689 Рік тому

    solid content sir

  • @الوقايةخيرمنالعلاج-ظ1ق

    Hi Mr hacker loi ❤

  • @AnshaAli-xf4cc
    @AnshaAli-xf4cc Рік тому

    Yo can u help me someone has got my email address and password help me

    • @ءءءءءءءءءءءء
      @ءءءءءءءءءءءء 11 місяців тому

      I can hack into ur account and change the password. but it's not an easy task and will take some weeks.

  • @infosecna9er
    @infosecna9er Рік тому

    Please give some new ideas about keylogger project

  • @DenisDennison-r9y
    @DenisDennison-r9y Рік тому

    Love your videos keep going

  • @justiceurasa2346
    @justiceurasa2346 Рік тому

    Helloo my brother Loi Liang Yang i appriate your work Bro, but to my side i have one problem here i fail to crack my RAR file password wer its very import to me please help me if possible Brother thanks

  • @cameronrich2536
    @cameronrich2536 Рік тому

    This dude a savage

  • @mahajaya8590
    @mahajaya8590 Рік тому +1

    PLEASE DO HACKING LOTTERY AND MATKA NUMBERS SITE

    • @Scorpion_Yug
      @Scorpion_Yug Рік тому

      Itne bade level pe hacking hogi toh stta matka sites band ho jayegi

  • @whoami-tpx
    @whoami-tpx Рік тому +2

    finally a new video

  • @boxrecap369
    @boxrecap369 Рік тому +1

    People I knew this person very well he tried to scam me he is a scammer

  • @hz_wan
    @hz_wan Рік тому

    Hey bro can you help me to take my email back😭😭😭😭

  • @financetech3618
    @financetech3618 Рік тому

    How hackers hack social media accounts, Please tell us about that ???

  • @onehunnittt
    @onehunnittt Рік тому +1

    I look up to you man great info

  • @lannymoran
    @lannymoran 11 місяців тому

    wish you could get my photos that were hacked and stolen

  • @RizwanShaikh-z8d
    @RizwanShaikh-z8d Рік тому

    can you please hack a one website for me ?

  • @DeonJusufi
    @DeonJusufi 28 днів тому

    whiterose?

  • @dadadodo1134
    @dadadodo1134 Рік тому +1

    Fist one who like...😊

  • @akiradennisM
    @akiradennisM Рік тому

    Looks cool, imma watch it

  • @GESStudents
    @GESStudents 2 місяці тому

    your videos are very fast. Very nice topics BUT very fast explanation which is not good

  • @r-test3668
    @r-test3668 Рік тому +1

    VERY NICE!!!!

  • @handylingga904
    @handylingga904 Рік тому

    coming to my country and you get note anything

  • @DeniseMcGrady-j9e
    @DeniseMcGrady-j9e 3 місяці тому

    Easton Extension

  • @teokarlsson305
    @teokarlsson305 Рік тому

    great video! But please dont bake your subs into the video

  • @s.nikolic497
    @s.nikolic497 Рік тому +1

    great video but i still don't understand anything hahah

  • @nootroot772
    @nootroot772 Рік тому

    I wanna try it on your website but please don't hack me I am just learning ok❤

  • @Soheib007
    @Soheib007 Рік тому

    Just click ok and smile , you should be honored getting hacked by him

  • @SarahMiller-j2l
    @SarahMiller-j2l 3 місяці тому

    Tyrese Manors

  • @morellotoxic1140
    @morellotoxic1140 Рік тому

    DO SOME PROJECTS WITH PYTHON

  • @BunyanMyrna-v9o
    @BunyanMyrna-v9o 4 місяці тому

    Weimann Orchard

  • @cybersecuritycs8129
    @cybersecuritycs8129 5 місяців тому

    alert(1)