This Overlooked Vulnerability Can Cause Massive Damage (Live Demonstration) | Bug Bounty | 2024

Поділитися
Вставка
  • Опубліковано 15 гру 2024

КОМЕНТАРІ • 50

  • @BibleOSINT
    @BibleOSINT 8 годин тому +4

    As I'm a beginner in bug bounty, you have explained this excellent!

    • @BePracticalTech
      @BePracticalTech  8 годин тому +2

      @@BibleOSINT Really happy that you liked it

    • @BibleOSINT
      @BibleOSINT 8 годин тому

      @BePracticalTech would you recommend me as beginner in bounty to look for those vulnerabities?

  • @морс-ф3д
    @морс-ф3д 6 годин тому

    Brilliant!!!!!!!!!!! Thank you for sharing your great knowledge!!!!!!!

  • @Muby_Ajiwa
    @Muby_Ajiwa 11 годин тому +1

    I really like the way you teaching. Thanks you so much keep up the good work

    • @BePracticalTech
      @BePracticalTech  11 годин тому

      @@Muby_Ajiwa Thank you for the humble words!

  • @Offsec-n4n
    @Offsec-n4n 9 годин тому +6

    what is the impact of creating multiple dashboards and how it effects to organizations and why they will pay $**** digits of bounty for this ??

    • @BePracticalTech
      @BePracticalTech  8 годин тому +1

      In this example, The local users were only supposed to create 3 dashboards and if they want to create more dashboard they either need to get the premium account or login as admin user. However, we were successfully able to bypass this restriction and able to create more than 3 dashboards so it is an access control issue.
      Now in real world, If an attacker is able to access premium feature without the need to get the subscription, it will be a financial loss for the organization. Hope you understand!

    • @victorgomesgomes
      @victorgomesgomes 8 годин тому

      @@BePracticalTech You can also test under Current user limit: 5/5 to do a bypass with this current application: 6/5

  • @shivakumarmv4249
    @shivakumarmv4249 8 годин тому

    Excellent...Thanks for sharing

    • @BePracticalTech
      @BePracticalTech  8 годин тому

      @@shivakumarmv4249 I am really glad you liked it!

  • @the_sandman00
    @the_sandman00 9 годин тому

    Great explanation!

  • @sonamohan6194
    @sonamohan6194 12 годин тому +1

    awesome! Really well-explained as well!!

  • @Ch4ndan_das
    @Ch4ndan_das 8 годин тому

    thank u so much sir for giving this use full video

    • @BePracticalTech
      @BePracticalTech  8 годин тому +1

      I am really glad that you found this video helpful!

  • @i_am_your_king
    @i_am_your_king 8 годин тому +1

    Thank you for the video I tried to enter the page to try the method, but it gives an error message. Error code 522 Connection timed out

  • @Unknown_feed
    @Unknown_feed 13 годин тому +2

    Love from Nepal ❤❤

  • @vijay_sawant
    @vijay_sawant 13 годин тому

    I have been watching you for a long time, and you are really a great teacher

  • @Knownsense_world_
    @Knownsense_world_ 12 годин тому

    Thanks ❤

  • @starlox0
    @starlox0 12 годин тому

    Awesome Video😀Understood clearly

  • @HadkerX
    @HadkerX 10 годин тому

    Thanks

  • @newuser2474
    @newuser2474 6 годин тому +1

    Bro but what will be mitigation for this issue 😮

  • @l00pzwastaken
    @l00pzwastaken 10 годин тому

    Kya hal hai nice video :) good research and explanation bhai

  • @Hell_Beast_Gaming_YT
    @Hell_Beast_Gaming_YT 11 годин тому

    awesome!

    • @BePracticalTech
      @BePracticalTech  11 годин тому

      @@Hell_Beast_Gaming_YT Thank you!

    • @Hell_Beast_Gaming_YT
      @Hell_Beast_Gaming_YT 10 годин тому

      @@BePracticalTech Buddy, I’ve been preparing for the CEH exam for the past six months, and now I’m planning to take the test. However, I’m still confused about how to ensure success in cracking the exam. Can you guide me on this ?

    • @Hell_Beast_Gaming_YT
      @Hell_Beast_Gaming_YT 10 годин тому

      @@BePracticalTech Buddy, I’ve been preparing for the CEH exam for the past six months, and now I’m planning to take the test. However, I’m still confused about how to ensure success in cracking the exam. Can you guide me on this?

  • @한국어의이름이라면강
    @한국어의이름이라면강 9 годин тому +1

    i wanna see this app source code

  • @a.c.5985
    @a.c.5985 2 години тому +1

    Is it possible to see a real example?

  • @vulncrax
    @vulncrax 12 годин тому

    Keep it up 🎉

  • @mohammadrezafarahani9287
    @mohammadrezafarahani9287 10 годин тому +1

    Please share that code

  • @z3r0X0r
    @z3r0X0r 11 годин тому

    Thanks for give us this type really good challenge

  • @harshthakar2207
    @harshthakar2207 7 годин тому

    Really sir this was the best video till now on race condition plz share me your linkedin❤

  • @MubashshirShaikh-hs8oy
    @MubashshirShaikh-hs8oy 8 годин тому

    make a video on burp suite full potentail

  • @MianHizb
    @MianHizb 13 годин тому +1

    Bro can you kindly just mention Race conditions in the title...thanks

  • @ekkofed
    @ekkofed 12 годин тому +1

    Alright

  • @iq_rasco
    @iq_rasco 9 годин тому +1

    race condtion

  • @SecureByBhavesh
    @SecureByBhavesh 13 годин тому +1

    First