Пікірлер
@jxkz7
@jxkz7 17 күн бұрын
Full video please?
@chronicallychill9979
@chronicallychill9979 Ай бұрын
I thought we were weighting system prompts more than user prompts. Aren't we?
@fellzer
@fellzer Ай бұрын
Bit too much on the EQ brotha. Good video tho.
@comosaycomosah
@comosaycomosah Ай бұрын
dude you make such good videos
@7SeasSecurity
@7SeasSecurity Ай бұрын
Really appreciate the kind words! We put a lot of work in these videos, so that’s definitely much appreciated.
@comosaycomosah
@comosaycomosah Ай бұрын
@@7SeasSecurity oh for sure dude! And ohhh yea I bet! I've seriously considered making videos or blog content and will again but it's so much work. Been busy learning lol
@KiDR_IANI
@KiDR_IANI Ай бұрын
💙💙💙
@Terry-f6f
@Terry-f6f Ай бұрын
Am I the only one that's got the audio and video not completely synced? super trippy
@Terry-f6f
@Terry-f6f Ай бұрын
Maybe I'm having a stroke? lol
@Red.Dots.
@Red.Dots. Ай бұрын
Its AI
@salzkasten
@salzkasten Ай бұрын
With the rise of AI you'll pretty much have to do this as an applicant.
@superfliping
@superfliping Ай бұрын
Have you heard of a prompt injection entering a Facebook backdoor database? Iteration internal promps loops.
@chrisalupului
@chrisalupului Ай бұрын
Thanks for covering the black box perspective! Awesome video!
@7SeasSecurity
@7SeasSecurity Ай бұрын
Always glad to tackle the black box side of the house! Appreciate the kind words and you as always!
@SensuBeem
@SensuBeem Ай бұрын
The ratio of brain rot to hacking is perfect in this video. good job!
@7SeasSecurity
@7SeasSecurity Ай бұрын
It’s a tough balance!
@adyp487
@adyp487 Ай бұрын
I will take your advice and not marry these ideas
@7SeasSecurity
@7SeasSecurity Ай бұрын
I love it! Thanks for watching and appreciate your time!
@ThetHtooZaw-pv3wl
@ThetHtooZaw-pv3wl Ай бұрын
Do more on code review please
@7SeasSecurity
@7SeasSecurity Ай бұрын
Definitely will do! Like I mentioned in the video, the overall prompt injection / engineering video will definitely involve code review! Thanks for checking out the video!
@adyp487
@adyp487 Ай бұрын
👀
@7SeasSecurity
@7SeasSecurity Ай бұрын
👀
@Problemsun
@Problemsun Ай бұрын
First
@7SeasSecurity
@7SeasSecurity Ай бұрын
Yeah you were!
@Coffee-and-Pizza
@Coffee-and-Pizza Ай бұрын
He is in a sandbox, now scape from there. 😉
@dirtydevotee
@dirtydevotee Ай бұрын
(4:16) While I'm sure that was just for demonstration purposes, that image illustrating the "Neil Armstrong" and "Charles Lindbergh" mixup is a total fabrication. A hallucination is when a word with double meaning triggers a crossover in the LLM. Charles Lindbergh has zero connection to the Lunar Pioneer mission. The better example would be if "Michael Jackson" (who invented the "moonwalk") somehow ended up as the first person to "walk" the "moon". Also, there's never multiple hallucinations in the same prompt (1951 AND Lindbergh AND Pioneer). And it's not "broadcasted". That's not a word. It's "broadcast" (it was "cast broadly"). There's a 0% chance that an LLM output the word "broadcasted".
@MackinsonTheGreat
@MackinsonTheGreat Ай бұрын
Ask an AI to hack into an AI
@7SeasSecurity
@7SeasSecurity Ай бұрын
Yup 100%! Tools like PyRIT and garak are perfect for that
@BloxFruitBandits
@BloxFruitBandits Ай бұрын
Here for the Portal V sound
@Problemsun
@Problemsun Ай бұрын
Thank you for the video. I like your explanations. Please make more
@Problemsun
@Problemsun Ай бұрын
first
@pebble1
@pebble1 Ай бұрын
When the AI apocalypse happens, Garr_7 is gonna be the safest man on Earth
@7SeasSecurity
@7SeasSecurity Ай бұрын
One can only hope.
@HEXiT_
@HEXiT_ Ай бұрын
joined the twitch and tried to leave my adhd at the door, i swear... ;) well worth the effort to catch live.
@7SeasSecurity
@7SeasSecurity Ай бұрын
Always appreciate you, HEXiT! Thanks for stopping by!
@ThetHtooZaw-pv3wl
@ThetHtooZaw-pv3wl Ай бұрын
I've been waiting more contents from you like years. Please upload more I beg. You explain things so well and clearly.
@7SeasSecurity
@7SeasSecurity Ай бұрын
Really appreciate the kind words! It's been a roller coaster lately, but we'll work to try and keep uploading more consistently!
@Dayanandhansubramani-rj6tc
@Dayanandhansubramani-rj6tc Ай бұрын
After Long time a Video in KZbin :) except Live Stream :)
@jazzyonline8793
@jazzyonline8793 2 ай бұрын
First time viewer, loved the content mate ! Curious to see you prompt inject a RAG model with knowledge stored as files (instead of SQL).
@7SeasSecurity
@7SeasSecurity 2 ай бұрын
Really appreciate that! I've been diving super heavy in hacking apps leveraging GenAI, so glad to hear it's been enjoyable! I'll most likely break this down into a more digestible, direct video when I have the bandwidth to record / edit. Re: file-based RAG - That's definitely an interesting scenario and definitely happy to tackle that! Probably will start with local files, then expand the attack surface by including file shares, cloud storage, etc. Appreciate the recommendation and getting the wheels turning!
@minhld8736
@minhld8736 2 ай бұрын
Hi, many thanks!
@thinhdang9256
@thinhdang9256 2 ай бұрын
may i access the lab ftp ??? i want to practic that chall
@cowid
@cowid 3 ай бұрын
The best explanation on PortSwigger XXE OOB out there.
@manondu44
@manondu44 3 ай бұрын
Thanks for the video it is very helpful ! However, I still did not get why do you use a stack entity and why you do not directly use the exfil entity ?
@techvertos4165
@techvertos4165 3 ай бұрын
Where can I get vulnerable code ?
@j4ck_d4niels
@j4ck_d4niels 4 ай бұрын
thanks for sharing this man, I never could understand how this works without watching this
@Carlos-kc8vx
@Carlos-kc8vx 4 ай бұрын
excellent quality I love so much you video man
@309electronics5
@309electronics5 5 ай бұрын
I actually did this with a tuya iot camera and got a uboot shell by removing a 'silent' argument in the binary and flashing it on and i also set bootdelay to 3 in the binary and replaced the password hash with my own
@aliel-shennawy3670
@aliel-shennawy3670 5 ай бұрын
Great work, thanks👏
@z1ro_zb
@z1ro_zb 5 ай бұрын
great explanation!, you should make more portswigger videos🙌
@z1ro_zb
@z1ro_zb 5 ай бұрын
great video!
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Really appreciate that!
@efran.calikoglu
@efran.calikoglu 6 ай бұрын
You're one of my fav web app hacker. I cannot wait for the other videos.
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Really appreciate that! Definitely more videos to come!
@alicia2111
@alicia2111 6 ай бұрын
*promosm* 😄
@vupham5745
@vupham5745 6 ай бұрын
Which terminal to read uart?
@7SeasSecurity
@7SeasSecurity 6 ай бұрын
Good question! I use screen personally, but I’ve heard great things about Minicom. Minicom lets you change baud rate on the fly, which is nice. I just use screen out of habit, but there are lots of options!
@suder54ULs
@suder54ULs 6 ай бұрын
Best resource, among all i have to check. Good Keep going
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Really appreciate that!
@droidh4x0r6
@droidh4x0r6 7 ай бұрын
Thank you for taking the time to do this, to edit the videos and for sharing!
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Definitely glad to share the knowledge and lessons learned!
@thewifiaddict
@thewifiaddict 7 ай бұрын
Another amazing video!
@7SeasSecurity
@7SeasSecurity 7 ай бұрын
Thank you!
@nishantdalvi9470
@nishantdalvi9470 7 ай бұрын
Finally your back 😁 and what a coincidence I was learning about JWTs only
@7SeasSecurity
@7SeasSecurity 7 ай бұрын
Glad to be back!
@armandoflores4783
@armandoflores4783 7 ай бұрын
Great Video! You're an awesome teacher! Keep pushing out videos!
@7SeasSecurity
@7SeasSecurity 7 ай бұрын
Really appreciate the kind words! We'll work on trying to get more videos out!
@MSecYT
@MSecYT 7 ай бұрын
Garr the literal wizard 🧙🔥🔥🔥
@7SeasSecurity
@7SeasSecurity 7 ай бұрын
Long time no see, y'all! This video was recorded way back in 2022 and it covers the first Web Security Academy Lab. I added a bit of updates, but it should be a good "primer" for understanding JWTs and the "why" behind hacking them! We'll be covering the rest of the labs soon for a more in-depth, comprehensive methodology around JWTs, but we hope you enjoy this initial video!
@TwistedXD9
@TwistedXD9 7 ай бұрын
Please make more videos
@TwistedXD9
@TwistedXD9 7 ай бұрын
you do hardware too?
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Yep! Been fun getting back into it!
@TwistedXD9
@TwistedXD9 7 ай бұрын
can you make more youtube videos on portswigger labs?
@TheWorstGamerToLive
@TheWorstGamerToLive 7 ай бұрын
Please Cross My Scripting father
@7SeasSecurity
@7SeasSecurity 5 ай бұрын
Done. Please validate