BUG BOUNTY HUNTING: FINDING CROSS SITE REQUEST FORGERY LIVE

Поділитися
Вставка
  • Опубліковано 19 вер 2024
  • Hi everyone! This video demonstrates how to find cross site request forgery on live websites. Feel free to ask your doubts in the comment section.
    Previous Video:
    • BUG BOUNTY: LET'S AUTO...
    Telegram:
    telegram.me/be...
    Courses:
    Hacking windows with python:
    www.udemy.com/...
    The Ultimate Guide to hunt Account Takeover:
    www.udemy.com/...

КОМЕНТАРІ • 13

  • @bughunter3476
    @bughunter3476 Рік тому +1

    I wish I've got this channel when I was starting Bug bounties, this is so awesome man.

  • @songsxmashup
    @songsxmashup 25 днів тому

    nice explained bro i got it nicely

  • @vijay_sawant
    @vijay_sawant 3 місяці тому

    Thank you so much for this video, i was having one doubt that. If they are using XSRF token in cookies: header then, that is sufficient for csrf or not?

  • @CodewizardSumit
    @CodewizardSumit 5 місяців тому

    🔥🔥

  • @webs404
    @webs404 Рік тому

    Why when i go on your website i can't find labs

  • @xml-ha6k3r
    @xml-ha6k3r Рік тому +3

    I found B-SSRF in hackerone program ,but I only get request back in my burp collaborator. This is enough for POC ? please tell bro ..

  • @armaranthan1603
    @armaranthan1603 Рік тому

    Bro how to jwt token confusion key bypass ?? With kali Linux

  • @rajeshsagar3912
    @rajeshsagar3912 Рік тому

    can we get csrf on admin login page?

  • @mahfu847
    @mahfu847 Рік тому

    Bro, it's self csrf that is a informative issue and no impact.
    Csrf led to victims account name or anything change. Here you can show us s crsf that is you do in your account not victims account.

    • @mahfujurrahman77
      @mahfujurrahman77 Рік тому

      @@BePracticalTech can you tell me please it’s Impact?
      And if I find the same issue can i report it??
      And what the severity is??

  • @satyaprakash8d289
    @satyaprakash8d289 Рік тому

    Ni