Cross Site Scripting XSS Explained | TryHackMe Junior Penetration Tester | OSCP

  Рет қаралды 28,216

Motasem Hamdan | Cyber Security & Tech

Motasem Hamdan | Cyber Security & Tech

Күн бұрын

Пікірлер: 50
@cosmintibuleac969
@cosmintibuleac969 2 жыл бұрын
For anyone having issues with the final session cookie answer, there seems to be a bug. Here is the correct answer: 4AB305E55955197693F01D6F8FD2D321
@ursr78122
@ursr78122 2 жыл бұрын
Man, thank you very much for the answer, I spent more than hour to come up that task does'nt work... But I was sure that I'm doing everything right
@unpopularopinion1032
@unpopularopinion1032 2 жыл бұрын
aaaah no wonder. The bug had to do with the netcat listener (or server as shown in the video) not receiving confirmation of interaction after ticket was viewed right? just want to verify.
@cosmintibuleac969
@cosmintibuleac969 2 жыл бұрын
@@unpopularopinion1032 either that or I was not getting the corect cookie for the answer, don't remember 100% accurately.
@martyduniaud1360
@martyduniaud1360 2 жыл бұрын
OMFG, thank you, 1 day I break my head cause that
@jjjww975
@jjjww975 2 жыл бұрын
I could not get the final script to work and bounce back the cookie -- something wrong with the THM network --- everything else worked up t that point
@unpopularopinion1032
@unpopularopinion1032 2 жыл бұрын
Thanks for these videos bro. Ive seen two of your walkthroughs already and they are the best/easiest to understand.
@mohamedahmed-q1m4v
@mohamedahmed-q1m4v Жыл бұрын
The way you have explained is really easy and I understand it now. maybe will forget it tomorrow haha
@RicondaRacing
@RicondaRacing 2 жыл бұрын
that last question had me going crazy for hours, THANK YOU!
@AC-he8ln
@AC-he8ln Жыл бұрын
Thanks, was not working with the nc -nlvp 9001 suggested in the exercise, but worked fine with http server.
@marosmihok8782
@marosmihok8782 2 жыл бұрын
THANK YOU SO VERY MUCH MAN! I was struggling with this task for so long.
@mialarssen2627
@mialarssen2627 5 ай бұрын
Thank you so much Mr Motasem. How do I get that My Notes Library? I`ll appreciate so much :)
@عربارمي-ج9س
@عربارمي-ج9س 2 жыл бұрын
can you share with as the Manual in 24:51 mins (OWASP+Web App Pentesting) Thanks
@silentkille4
@silentkille4 2 жыл бұрын
learning alot from your videos thank you so much
@syriamoon2674
@syriamoon2674 3 жыл бұрын
Thank you for the explanation. Would you advise me to learn through the site and buy a paid account?
@Sleepygayboi9797
@Sleepygayboi9797 3 жыл бұрын
Yes, it is extremely useful, I have done the pre security and complete beginner so far, and am very confident in my fundamental skills now. Def worth.
@MotasemHamdan
@MotasemHamdan 3 жыл бұрын
Yes I would. Its very useful
@ayoub904
@ayoub904 Жыл бұрын
man ,would like to share with us that scripting note, or we can find it ? thanks alot
@MotasemHamdan
@MotasemHamdan Жыл бұрын
Hello, cyber security notes can be accessed through channel membership tier 2 kzbin.info/door/NSdU_1ehXtGclimTVckHmQjoin
@derastephh
@derastephh Жыл бұрын
Hello, how do I know the port for my web server?
@MotasemHamdan
@MotasemHamdan Жыл бұрын
netstat -antp | grep apache
@adminaccount1951
@adminaccount1951 2 жыл бұрын
Hi, I know its a lot. But can you share your obsidian vault for reference.. ? Or kindly make a website out of it if possible.
@MotasemHamdan
@MotasemHamdan 2 жыл бұрын
Hello, online access to notes is part of channel membership kzbin.info/door/NSdU_1ehXtGclimTVckHmQjoin
@Alternosphere
@Alternosphere 2 жыл бұрын
Would you be willing to share your Obsidian notes?
@MotasemHamdan
@MotasemHamdan 2 жыл бұрын
Access to the manual can be done through the membership. kzbin.info/door/NSdU_1ehXtGclimTVckHmQjoin
@Alternosphere
@Alternosphere 2 жыл бұрын
@@MotasemHamdan brilliant. your content is amazing, keep it up man, big ups
@RS-uj2yf
@RS-uj2yf 2 жыл бұрын
Hm....cant find a link for notes...(((
@mersadbaradaran9176
@mersadbaradaran9176 2 жыл бұрын
ty my BRO!
@felipecg6587
@felipecg6587 3 жыл бұрын
Thank you Sir
@_think8830
@_think8830 Жыл бұрын
Thx bro❤️
@kyawswanyee3309
@kyawswanyee3309 2 жыл бұрын
can i get your cyber security obsidian note /
@MotasemHamdan
@MotasemHamdan 2 жыл бұрын
kzbin.info/door/NSdU_1ehXtGclimTVckHmQjoin
@ailson_junior7034
@ailson_junior7034 2 жыл бұрын
it only captures its own cookie and not the target's
@hajarlachhab8851
@hajarlachhab8851 3 жыл бұрын
can you share with us the obsidian notes please?
@MotasemHamdan
@MotasemHamdan 3 жыл бұрын
Hello, Notes are part of the channel membership. Take a look here kzbin.info/door/NSdU_1ehXtGclimTVckHmQjoin
@cuneytguclu8547
@cuneytguclu8547 2 жыл бұрын
@@MotasemHamdan you're awesome thanks
@FinaLBoSSv0iD
@FinaLBoSSv0iD 3 жыл бұрын
"fucking finally man"
@MotasemHamdan
@MotasemHamdan 2 жыл бұрын
gangsta style :)
@huuloc8719
@huuloc8719 3 жыл бұрын
Great.
@TuniRex
@TuniRex Жыл бұрын
sa3b ktirr hhhhhh
@MotasemHamdan
@MotasemHamdan Жыл бұрын
hahahaha sa3bbbbbbbbb
@cybersamurai99
@cybersamurai99 3 жыл бұрын
somehow I am geting a different value on my cookie on the last chalenge. It only contains the session ID cookie I get is : c2Vzc2lvbj01ZTcwZmFkNTRlM2Q2YWE4Nzk4Y2I3ZDNjZGMwMGVlYg==
@metallical87
@metallical87 3 жыл бұрын
yeah same with me
@hardiwrites4430
@hardiwrites4430 2 жыл бұрын
@@metallical87 same
@kolesnikov1991
@kolesnikov1991 2 жыл бұрын
I had the same problem but finally got a solution. Make sure that is a HTTP connection (HTTPS is encrypted) Second thing. You have to be patient. It takes a while to get cookie
@cosmintibuleac969
@cosmintibuleac969 2 жыл бұрын
For anyone having issues with the final session cookie answer, there seems to be a bug. Here is the correct answer: 4AB305E55955197693F01D6F8FD2D321
@BluD4g
@BluD4g 2 жыл бұрын
@@cosmintibuleac969 tryhackme hadn't fix it yet??
SQL Injection Vulnerability Explained | TryHackMe Junior Penetration Tester | OSCP
46:09
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 32 М.
File Inclusion Vulnerability Explained | TryHackMe Junior Penetration Tester | OSCP
33:40
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 64 М.
Chain Game Strong ⛓️
00:21
Anwar Jibawi
Рет қаралды 41 МЛН
BAYGUYSTAN | 1 СЕРИЯ | bayGUYS
36:55
bayGUYS
Рет қаралды 1,9 МЛН
Что-что Мурсдей говорит? 💭 #симбочка #симба #мурсдей
00:19
Cross-Site Scripting (XSS) Explained
11:27
PwnFunction
Рет қаралды 462 М.
Cross-Site Scripting (XSS) Explained! // How to Bug Bounty
14:43
Command Injection Vulnerability Explained | TryHackMe Junior Penetration Tester
12:13
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 13 М.
Hacking Websites With Cross-Site Scripting (XSS Attack Basics)
6:14
Jesse Campos - Chef Secure
Рет қаралды 409 М.
Cracking Websites with Cross Site Scripting - Computerphile
8:34
Computerphile
Рет қаралды 1,5 МЛН
Command Injection - TryHackMe Junior Penetration Tester 3.9
20:09
Brock Rosen
Рет қаралды 4,4 М.
XSS on Google Search - Sanitizing HTML in The Client?
12:58
LiveOverflow
Рет қаралды 693 М.
DO NOT USE alert(1) for XSS
12:16
LiveOverflow
Рет қаралды 166 М.
Cross-Site Scripting (XSS) Explained And Demonstrated By A Pro Hacker!
9:31