Covering The Under Rated Vulnerabilities: CORS Misconfiguration #1

  Рет қаралды 3,682

BePractical

BePractical

Күн бұрын

Пікірлер: 19
@MianHizb
@MianHizb 2 ай бұрын
4:10 there is no such thing as request 2 3, its not websockets its http stateless, preflight requets dont occur here, if you can correct that, it will be great, it only happens in non common http methods like delete still that is something else. Cheers
@AttackerShihab
@AttackerShihab 2 ай бұрын
Hey make portswigger all labs complete video .
@jawathossainrian
@jawathossainrian 2 ай бұрын
Really an Great Educational Material Openly Available
@om3726
@om3726 2 ай бұрын
Hi Bro/sis please make videos on High Severity bugs P1,P2,P3 Starting from easy to find & understand to complex
@jawathossainrian
@jawathossainrian 2 ай бұрын
Bro can u use KZbin transcript to add subtitles to your video? Automated subtitle are really pain
@ZaraRashidKhan
@ZaraRashidKhan 2 ай бұрын
Thank you for sharing
@BePracticalTech
@BePracticalTech 2 ай бұрын
Glad you liked it!
@bugstester9919
@bugstester9919 2 ай бұрын
which user's cookie is sent by poc.html code, even though there is session_id:admin was the cookie session of the user, which user is deleted by this code of poc
@akhilreddy9753
@akhilreddy9753 2 ай бұрын
What if it is in the forget password endpoint . I can send the request through cors .is it valid or informative
@BePracticalTech
@BePracticalTech 2 ай бұрын
Informative. You need to find an endpoint that is handling something sensitive. For example: An endpoint that can fetch users, edit profile, delete user etc
@nedurunaveen0417
@nedurunaveen0417 2 ай бұрын
Thanks broo
@pawankandu914
@pawankandu914 2 ай бұрын
sir can you please can you share your nu.of experience in bug bounty
@BePracticalTech
@BePracticalTech 2 ай бұрын
@@pawankandu914 I started bug bounty in 2020
@Mr.3cho
@Mr.3cho 2 ай бұрын
I want to be your student to learn bug bounty guruji😅
@BePracticalTech
@BePracticalTech 2 ай бұрын
I am glad to hear this! We will be planning something soon for this one!
@pratyushkashyyy
@pratyushkashyyy 2 ай бұрын
Heyyy
@BePracticalTech
@BePracticalTech 2 ай бұрын
Heyy
@SecureByBhavesh
@SecureByBhavesh 2 ай бұрын
First !!!!!
@BePracticalTech
@BePracticalTech 2 ай бұрын
Thanks for the support Bhavesh!
Bug Bounty: Content Discovery on Large Scope Like a Pro! | 2024
13:53
HELP!!!
00:46
Natan por Aí
Рет қаралды 75 МЛН
БУ, ИСПУГАЛСЯ?? #shorts
00:22
Паша Осадчий
Рет қаралды 2,8 МЛН
Happy birthday to you by Secret Vlog
00:12
Secret Vlog
Рет қаралды 6 МЛН
Live XSS Exploit: Using XSSFuzz to Break CSP on a Real Target!
19:26
Cross-Origin Resource Sharing (CORS) | Complete Guide
52:17
Rana Khalil
Рет қаралды 74 М.
BUG BOUNTY: SERVER SIDE REQUEST FORGERY | LIVE WEBSITE | 2023
21:57
AWS CEO - The End Of Programmers Is Near
28:08
ThePrimeTime
Рет қаралды 548 М.
Testing XSS Tools On Target Protected By WAF | 2024
16:20
BePractical
Рет қаралды 11 М.
HELP!!!
00:46
Natan por Aí
Рет қаралды 75 МЛН