Many things were learned today from Javascript & XSS to video-editing, thanks John!
@anonymousmokona85413 жыл бұрын
This video series got me to finally start learning pentesting - I always perceived it as something arcane and intimidating, but seeing how you struggle with node got me thinking that there is no shame in sucking at stuff.
@kaihuang54203 жыл бұрын
38:08 is starting of the dulpicate of previous content till 51:58. hope you can fix it! But great job!!!! John Thanks a lot for suffering for us non-javascript fanboys.
@timothybadenach24113 жыл бұрын
good to see that a security professional with 10 plus years can still struggle getting up the hill, so to speak. Gives guys that are learning motivation to keep going
@CyberAbyss0073 жыл бұрын
Thank you! I'm actually starting to get this stuff! Appreciate that you show how hard this stuff is and how much patience is required.
@sumedh16783 жыл бұрын
Let’s give a moment of appreciation for the amazing walkthrough. Thanks John.
@hamzabettache4973 жыл бұрын
I just like how you talk with your self and make actions :D it helps a lot : ) thanks for your videos, keep them ON.
@dennismunyaka65373 жыл бұрын
watching john work is like watching myself hack. I would've however given up, the live learning, googling and also building of payloads gives your channel an authentic human touch. as opposed to all other channels just regurgitating payloads from writeups. kudos
@teddybear91523 жыл бұрын
another video and another day of learning for me, thanks again John for all your hard work. Kudos to you for doing all this for us and still doing a day job and "life"!
@jacobsilva4213 жыл бұрын
I love the videos where there is 5 minutes left and he's still pulling his hair out. Just knowing he's about to find the one little mistake borking it up.
@xAngoryx3 жыл бұрын
Just found your channel and really loving your content
@giusepperandazzo912 жыл бұрын
I like your approach...it's is similar to a software engineer daily job...read, understand, try, fail repeat and so on...
@businessgoose86053 жыл бұрын
Like last year when I subed to you, you had like 80k followers. Keep going bro!
@mukundbhuva3 жыл бұрын
Hey, seems like the video is duplicated from 38:08. Love from India ❤️.
@theisoj3 жыл бұрын
I noticed the same thing. I think that John made a mistake accidentally.
@blackjackdealer2043 жыл бұрын
I pace around my room when John releases content..
@diddyman19583 жыл бұрын
I understood very little of that but it was great to see you get the flag in the end.
@peterchari38393 жыл бұрын
This is amazing. We learn new things everyday!!!!!!! CSP, fetch
@_DeProgrammer3 жыл бұрын
Using an editor like vim with bracket highlighting would prevent painful mistakes like this. Brutal! Good video tho.
@jannikmeissner3 жыл бұрын
Yes, I had fun! Another great video that made my day
@Grommish3 жыл бұрын
An Ide or setting Sublime for the context you're languaging on would help. Would make the inevitable formatting errors stand out
@neilthomas19073 жыл бұрын
ngl !! lowkey better than netflix rn
@mossdem3 жыл бұрын
This has been me trying to wrap my head around 'self' the past few days in Python lol
@kadensharpin21563 жыл бұрын
my eyes struggled to watch John struggle through the JS
@alandonaly4573 жыл бұрын
I always learn a lot from you , thanks!
@chriss88253 жыл бұрын
I am no JS expert, but in my experience JS is good at breaking itself and proceeding lines of code. I kept thinking you should just look at the browser console, or even even just copy paste known working attack to confirm nothing is borked. Not sure if this would have worked (ive only played with node with one small app), tho the way I would have approached getting the final data: Either sending it all to the console, or injecting it all into an element in the list page, or perhaps the easiest is just alert the data with something like match('CHTB.{50}') .
@ankurverma11573 жыл бұрын
Waiting for the video ❤️
@Lacsap33662 жыл бұрын
I dont't really understand why the javascript alert popup only opens two times if there are so many XSS payloads on that site.
@vater78413 жыл бұрын
realy exiting when you post a video,i hope someday you can teach how to investigate crypto scam with hacking skill like how they code or something else,thank you
@0x8badf00d3 жыл бұрын
I've been screaming punctuation at the screen: "CHTB\\{.*\\}" You kept escaping the asterisk. Probably just needed to double the backslashes when using normal strings.
@jonharper59193 жыл бұрын
Hah I was saying the same thing. Why are you escaping the *??? On the other hand he does everything else much better than I could ever do
@SabrinaSays3 жыл бұрын
Really awesome video! I'm just confused as to how the flag was decoded. And if we already had the coded version of it from /alien, then why did we need to fetch it through the terminal? Sorry if this is a stupid question.
@BilelBM3 жыл бұрын
Looking at the browser console would ve helped you debug the fetch regex problem. GG
@Zebby20133 жыл бұрын
Who the heck downvoted this only a few min in to the Premier?
@253nate3 жыл бұрын
A dumbass hater. Haha! They obviously don’t know who this man is. Hahahahaha! The world is so lucky we all took an oath.
@algerienizer3 жыл бұрын
this is great, thanks!
@JuanBotes3 жыл бұрын
thanks for making the content. \o/
@anonanon14003 жыл бұрын
PS1 var in .bashrc could help to fix that long pathname problem.
@viv_24893 жыл бұрын
Nice content as usual...
@iliaschymas18513 жыл бұрын
i dont want to be that guy but in 4:18 i think he is ironing a humam suit not a actual human
@azeesabdul26743 жыл бұрын
How to review code to find bugs
@vineet13 жыл бұрын
24:15 . 1 hr break lol
@tg79433 жыл бұрын
Push!
@aryangurung303 жыл бұрын
sheeeeeeeesh
@choleralul3 жыл бұрын
Cool!
@gtdt56663 жыл бұрын
that was cool :)
@mahmutivanov12043 жыл бұрын
Keep it up,
@cair0_2 жыл бұрын
holly molly
@bhagyalakshmi1053 Жыл бұрын
How many times also spending master season 9 times also collection anyone 29 test collection master in the past for collecting 2 nc .lnc ......X collection master in the
@cletusmugane2 жыл бұрын
i love you too
@georgehammond8672 жыл бұрын
regex is some nightmare>
@cherifxtitou68223 жыл бұрын
i hope if one day i will have skill like y have am very jealous
@hocmuong28tv893 жыл бұрын
💋💖💖💕
@fordorth3 жыл бұрын
LEARN node!
@fordorth3 жыл бұрын
I remember when I first started watching your videos you at one point said you should not use scripts if you don't know what they do... now you just go out and grab scripts for everything and fight with them to make them work.!?
@randomnickname003 жыл бұрын
hey
@MrDeicide1282 жыл бұрын
i'm glad regex destroys you as much as me
@bhagyalakshmi1053 Жыл бұрын
Ther ck cash tp link 🖇️ password 🔑 confirmly flag 🚩
@alawe2203 жыл бұрын
Swae Lee
@akashkhan19883 жыл бұрын
I would love to get your help in bug bounty hunt Can you help me please..! By the way bro LoVe From Bangladesh🇧🇩🇧🇩
@udhavkansal34263 жыл бұрын
Sirr big fan ❤ I want ur guidence. Plzz help And also, luv from india 🇮🇳