Hack Websites with Server Side Template Injection (SSTI) - Rooting HTB Doctor Machine

  Рет қаралды 25,916

zSecurity

zSecurity

Күн бұрын

Пікірлер: 112
@viduraranathunga6000
@viduraranathunga6000 3 жыл бұрын
One of the best teachers ever. Keep it up zaid , From sri lanka 🇱🇰 🇱🇰 🇱🇰
@anishchamuah2151
@anishchamuah2151 3 жыл бұрын
Highly practical but doesn't ignore the theory as he always says. All the support from, India, Zaid your videos got me into the domain of hacking and now I am deeply invested and want to build my career on his. Completed almost all your courses till now on Udemy and they were amazing. Always looking forward to anything new you post and eagerly waiting for any new course you bring on Udemy too. Again thank you brother hope I get to meet you someday when I am actually into my dream career.
@rariehlani1344
@rariehlani1344 2 жыл бұрын
For anyone practicing. It's absolutely essential to have Wireshark on capturing traffic(use NAT for less extra traffix) Look at TCP streams, look at what happening in those packets. It may help, especially if you will end up in SOC.
@l4mole
@l4mole 3 жыл бұрын
hello from mexico bro, i knew about you from your courses of python in the Packtpub library, thanks for sharing your knowledge i learned lot
@Justin-nw7xi
@Justin-nw7xi 3 жыл бұрын
Hi zaid make a video on your workout routine LOVE FROM INDIA
@crossup13
@crossup13 3 жыл бұрын
How do these videos only get 800 likes, that's crazy to me. These are great videos IMO
@ذوالفقارالبحريني-ح4ج
@ذوالفقارالبحريني-ح4ج 3 жыл бұрын
The beast has uploaded a new video 😍😍
@AbdoZaInsert
@AbdoZaInsert 3 жыл бұрын
اتحداك يا هاك انت
@thehoodshooter1985
@thehoodshooter1985 3 жыл бұрын
I wanna be ur teacher 👀
@ذوالفقارالبحريني-ح4ج
@ذوالفقارالبحريني-ح4ج 3 жыл бұрын
@@thehoodshooter1985 why not😏
@ذوالفقارالبحريني-ح4ج
@ذوالفقارالبحريني-ح4ج 3 жыл бұрын
@@AbdoZaInsert 🤣🤣😂 افا عليك
@AbdoZaInsert
@AbdoZaInsert 3 жыл бұрын
@@ذوالفقارالبحريني-ح4ج هههههههههههههههههههههه
@webitedzjapan
@webitedzjapan 3 жыл бұрын
Best Ethical Teacher ✔
@praveenvishnu17
@praveenvishnu17 3 жыл бұрын
Love from India 🇮🇳😍
@shreesharda7508
@shreesharda7508 3 жыл бұрын
Me too
@PawsomeSquad
@PawsomeSquad 3 жыл бұрын
Hello Zaid, Just bought one of your course "Learn ethical hacking from scratch" You are my first teacher from the cyber field. And I hope it's going to fun learning from you.
@thebrittybrad5686
@thebrittybrad5686 3 жыл бұрын
same here bro
@PawsomeSquad
@PawsomeSquad 3 жыл бұрын
@@thebrittybrad5686 you doing his course?
@pinbox_gamer723
@pinbox_gamer723 3 жыл бұрын
I am also . He is a best teacher.
@PawsomeSquad
@PawsomeSquad 3 жыл бұрын
@A031 Bhavik Jain not going to buy any equipments ....but how is his courses??
@PawsomeSquad
@PawsomeSquad 3 жыл бұрын
@A031 Bhavik Jain I think that for network scanning part right?? I guess you can use other adaptar as well...I
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked Жыл бұрын
Yeee, I learned more of Hack The Box the other day when searching for best hacking games! I'm waiting to get a very nice gaming laptop to start your course and to do Hack The Box, but I may just put a Linux operating system on another partition on my 4GB laptop until then. Hehe.
@juliuscrisostomo2517
@juliuscrisostomo2517 3 жыл бұрын
Hi Zaid love your videos and courses, but I just to give a suggestion, Why don't you create a full training course for penetration testing in your website? which we could apply in real word.
@kabandajamir9844
@kabandajamir9844 3 жыл бұрын
Asalam aliekum my teacher lam a slow learner but l like your videos so much may Almighty ALLAH reward you
@RohanVishwAaaa
@RohanVishwAaaa Ай бұрын
Why muslims always put that shit names on everything ?
@abdulrahmanmsusa9225
@abdulrahmanmsusa9225 3 жыл бұрын
Always amazing context master zaid 💥
@rajdipdeysarkar4553
@rajdipdeysarkar4553 3 жыл бұрын
Please upload videos regularly U guys r op🔥👍
@danielflutter8787
@danielflutter8787 3 жыл бұрын
Hello Zaid, am Daniel from Nigeria, have seen almost all of your courses and love it, I have passion to obtain certificate on Cyber security, but it kind of expensive for me. Please what do you suggest I do. Thank you so much for all this videos
@dmsarvesh4083
@dmsarvesh4083 3 жыл бұрын
Sir can you please make a video on encryption like hashing, salting, asymmetric encryption, etc...?
@siddusiddesh9726
@siddusiddesh9726 3 жыл бұрын
Nice content keep growing ❤️
@rayb5204
@rayb5204 3 жыл бұрын
All your videos are gold!!
@jaspreetsingh4362
@jaspreetsingh4362 3 жыл бұрын
Please make a course on javascript for hackers
@jdaniele
@jdaniele 3 жыл бұрын
Very interesting. Thanks for sharing!
@bimleahdubey7797
@bimleahdubey7797 3 жыл бұрын
Hello, Sir I am regular viewer of this channel, will you explain how to install mitmf in Kali 2021. I am unable to install it.🙏🙏🙏🙏🙏🙏
@oisinleane
@oisinleane 3 жыл бұрын
Would love to see more like this!
@manishfoodtechs
@manishfoodtechs 3 жыл бұрын
This is very nice channel ❤️
@farisali3722
@farisali3722 3 жыл бұрын
Which Email platform is safer for signing in to hack a box like accounts??
@thebrittybrad5686
@thebrittybrad5686 3 жыл бұрын
sir plz answer my doubt in your ethical hacking course. I really need your help
@sushildahal8875
@sushildahal8875 3 жыл бұрын
love your video bro ❤️❤️❤️
@KimpotGella
@KimpotGella 7 ай бұрын
Hello sir, how to watch your videos in Hacking Masterclass Course? I can't watch it
@samvrittiwari351
@samvrittiwari351 3 жыл бұрын
Sir, please create a video that how we can secure this type vulnerability.
@crossup13
@crossup13 3 жыл бұрын
As far as the initial vulnerability, you need to sanitize any input that may be executed on the server (generally avoid executing anything if you can, but if you must, you NEED to sanitize it However web vulns happen all the time, and if it does happen you REALLY want to limit the damage so the most important thing you can do here is DO NOT run any service as 'root' unless it's 100% required, and any service that DOES run as root ensure is always fully updated with patches and preferably do not allow non-privileged user access to those services Maybe someone else has some better advice but those are my initial thoughts on this one
@samvrittiwari351
@samvrittiwari351 3 жыл бұрын
@@crossup13 thanks bro
@Mohta69
@Mohta69 3 жыл бұрын
Hello sir great video. Can u please make a video on Hail Mary Attack please.
@wafttv
@wafttv 3 жыл бұрын
Please make a video on best bluetooth adapters for hacker. I can't find the good one. My neighbours are very unsocial they don't listen to us. So, I want to ddos on there bluetooth device. So please explain on a video.
@ghairatullah7267
@ghairatullah7267 3 жыл бұрын
Hi bro Please help me which laptop is best for hacking? Please reply Soon
@amirchegg
@amirchegg 3 жыл бұрын
please zaid how did you install and configure old kali linux theme on v2021?
@deciphered115
@deciphered115 3 жыл бұрын
Greatest Of All Time
@shivamseksaria8425
@shivamseksaria8425 3 жыл бұрын
can u pls upload a full guided video of how to install mitmf framework. my apt repository is unable to locate it and i also followed github but still no luck.
@swastiksumansahoo3868
@swastiksumansahoo3868 3 жыл бұрын
you are awesome sir..
@gauravrai9693
@gauravrai9693 3 жыл бұрын
sir make a course on call spoofing and how we can do it
@aponaponaponapon
@aponaponaponapon 3 жыл бұрын
Brother do you have any website where you Teach is ethical hacking
@literallyinsane226
@literallyinsane226 3 жыл бұрын
zaid sir im your student enrolled in two of your courses but now im having a trouble please help me. sir please tell me how to maintain ngrok session all the time even when my pc is turned off. is there any way to do that? please tell me what to do sir please and also tell me if there is any way to host my server over internet please sir please!! thank you,
@bijoyjogi7111
@bijoyjogi7111 3 жыл бұрын
Hellow sir I have lost your Wi-Fi penetration testing video in full course channel youtube removed this video, and I will just finish out it but doesn't please help us sir, can you put the video on your website
@Sidhantbhuje
@Sidhantbhuje 3 жыл бұрын
Someone help me please, I am a total beginner in kalo linux vm. I downloaded customized version ova file, and somehow managed to run and I was able to do monitor mode and packet injection, after some steps Bssid all shown but main prob I couldn't change Wlan0 to Woan0mon I tried everything and today I opened terminal it gives no output in console PLZZ HELPP!!!!
@pinbox_gamer723
@pinbox_gamer723 3 жыл бұрын
Bhai do one thing if u subscribe to Udemy course then go doubt section and ask whatever doubt u have .JAI SHREE RAM bhai. 🕉️🕉️🕉️🕉️🕉️🕉️🕉️
@mrreddotyttanay3347
@mrreddotyttanay3347 3 жыл бұрын
hi zaid whose side you are in god of war ragnarok kratos or thor
@zSecurity
@zSecurity 3 жыл бұрын
Kratos of course ;)
@AlokJain14
@AlokJain14 3 жыл бұрын
bro i need your help i have kali customized by zsecurity will i have to install drivers for rtl8812au chipset pls reply
@zSecurity
@zSecurity 3 жыл бұрын
Hi, please ask in the Q&A / Forums and we'll help you out within 15 hours.
@AlokJain14
@AlokJain14 3 жыл бұрын
@@zSecurity where is Q&A forms
@codingtech6169
@codingtech6169 3 жыл бұрын
Master Zaid. Is hacking your own computer legal or illegal 🤔
@Mohta69
@Mohta69 3 жыл бұрын
Legal till you allow yourself to do it lol
@samratchapagain4804
@samratchapagain4804 3 жыл бұрын
Hi Zaid, do u offer lifetime access courses ? I can't see any lifetime membership on ur website. thanks
@zSecurity
@zSecurity 3 жыл бұрын
Hi, yes we do offer lifetime, unlimited access on all of our courses.
@samratchapagain4804
@samratchapagain4804 3 жыл бұрын
@@zSecurity can u please provide me the direct link of lifetime membership ? thanks
@pinbox_gamer723
@pinbox_gamer723 3 жыл бұрын
Where u frm ??
@samratchapagain4804
@samratchapagain4804 3 жыл бұрын
@@pinbox_gamer723 nepal
@pinbox_gamer723
@pinbox_gamer723 3 жыл бұрын
@@samratchapagain4804 oh i am from India 🕉️
@rityendusom3756
@rityendusom3756 3 жыл бұрын
Android 10 can be hacked ??
@kotoamatsukami5301
@kotoamatsukami5301 3 жыл бұрын
You are the best hacker and you gotta gimme a shout out in your next video
@varungill2743
@varungill2743 3 жыл бұрын
Bro make another course on Ethical Hacking from scratch 2021 version there are so many new things added in 2021 so it will be very helpful if you make a new one
@fuckercat8866
@fuckercat8866 3 жыл бұрын
Hi! Sir, My rlogin permission is denied please give me solution thank you🙏
@prateekthakur2039
@prateekthakur2039 3 жыл бұрын
Hi thank you for your knowledge. Just took your Udemy course " LEARN ETHICAL HACKING FROM SCRATCH" just. Wanted to ask is there any other course which I should enroll after this o e :)
@rodrigofranco3507
@rodrigofranco3507 3 жыл бұрын
hi zaid, could you make a video about create our own VPN ?
@samyakjain5377
@samyakjain5377 3 жыл бұрын
Sir I learned so much from u I just love hacking machines...., Practicing on hack the box....., I wanted u to tell about 'how to file or register a bug to a company' i just found out a vulnerability in amazons login page.... I want to file it properly and get some money out of it so i can get a better pc... PLS HELP
@bahai02
@bahai02 3 жыл бұрын
Bhai tu ne vulnerability nikala, I truely appreciate that. But yeh khuleaam kyun bol raha hai?
@fahimmontasir2083
@fahimmontasir2083 3 жыл бұрын
hey, i am a windows user and using kali linux on virtual box......i don't have any experiences with other linux distros, so that's why i am curious to know which distro or OS that was, can anyone help?
@zSecurity
@zSecurity 3 жыл бұрын
This is a custom version of Kali, you can get it from here zsecurity.org/download-custom-kali/
@fahimmontasir2083
@fahimmontasir2083 3 жыл бұрын
@@zSecurity o......thanks a lot boss....
@inajpsparejoy6430
@inajpsparejoy6430 3 жыл бұрын
Can you make a video on how to decrypt omfl ransomware without paying.
@hva8055
@hva8055 3 жыл бұрын
Bro cam you do termux course in udemy or about brute force attack plaese
@saurrav3801
@saurrav3801 3 жыл бұрын
Bro why we add ip in /etc/hosts
@HuzaifaAPallan
@HuzaifaAPallan 3 жыл бұрын
Hey Zaid,I was going to buy your course on Udemy.The reviews say that the courses are not updated and dont meet current knowledge and standards. Please help me. Is it true? Please reply.
@zSecurity
@zSecurity 3 жыл бұрын
Hi, all of our courses are constantly being tested to double check that the material is still up to date :)
@HuzaifaAPallan
@HuzaifaAPallan 3 жыл бұрын
@@zSecurity Thank You soo much Zaid. God bless
@YumBite-yb
@YumBite-yb 3 жыл бұрын
Can you Please teach how to root Huawei mobile 2021 ?
@theethicalhadwani4091
@theethicalhadwani4091 3 жыл бұрын
Ssti full form??
@vishvalorant
@vishvalorant 3 жыл бұрын
Nice video !!
@blackdragon9550
@blackdragon9550 3 жыл бұрын
Hey I want to learn how to hack online games can you please make one video on this
@SB-nr4xz
@SB-nr4xz 3 жыл бұрын
Sir. Upload a video on sim swap hack
@falseking7197
@falseking7197 3 жыл бұрын
How do I join the discord
@sjslife
@sjslife 3 жыл бұрын
This guy needs to work on his accent, because it’s a great content but it’s hard to understand him sometimes, no offence! Just constructed critic, that’s all. Keep going bro! Thanks
@Ectos
@Ectos 3 жыл бұрын
Thanks for the comment mate, I am currently working on improving my accent to make myself more understandable. You can always use the captions ; )
@mahianmahin2530
@mahianmahin2530 3 жыл бұрын
Zaid is the best
@discipleofgod5948
@discipleofgod5948 2 жыл бұрын
Hello mate can you teach me to hack the website that stole 40k from me?
@vijayrenghan.s4676
@vijayrenghan.s4676 3 жыл бұрын
Hello sir I am needed metasploit su password
@venomgaming2995
@venomgaming2995 3 жыл бұрын
can u tell me how to hack wps wifi easily
@zSecurity
@zSecurity 3 жыл бұрын
Check out our network hacking course to learn more about that: zsecurity.org/courses/learn-network-hacking-from-scratch/
@neversettle1634
@neversettle1634 3 жыл бұрын
Hi Zaid Sir Good Day Ahead ! It is an interesting video.... I would like to ask you about ....Pls Make a video on DELETED WEBSITE RECOVERY ....FROM WAYBACK MACHINE OR anyelse ... software to ... recovery for the deleted websites or domain....pls its my humble request....thanks in advance
@theloveforlionelmessiandfc3389
@theloveforlionelmessiandfc3389 3 жыл бұрын
First here 👊❣️
@ramsudhan8094
@ramsudhan8094 3 жыл бұрын
Hello Zaid
@4ssarabio
@4ssarabio 8 ай бұрын
22:22
@nawid1687
@nawid1687 3 жыл бұрын
I fucking love you zaid No homo.
@abhayakarte5207
@abhayakarte5207 3 жыл бұрын
👍
@Amankeshri
@Amankeshri 3 жыл бұрын
jdismajsir
@maazahmad4893
@maazahmad4893 3 жыл бұрын
First comment
@sadmanabrarrafin7573
@sadmanabrarrafin7573 3 жыл бұрын
🥴🥴🥴
@mahianmahin2530
@mahianmahin2530 3 жыл бұрын
4th comment
@gamerxaif8811
@gamerxaif8811 3 жыл бұрын
3rd Comment
Hack Cameras & More With Shodan Like Mr. Robot
24:05
zSecurity
Рет қаралды 146 М.
Car Bubble vs Lamborghini
00:33
Stokes Twins
Рет қаралды 45 МЛН
Server-Side Template Injection: RCE For The Modern Web App
44:41
How Hackers Move Through Networks (with Ligolo)
20:01
John Hammond
Рет қаралды 280 М.
Expose Local Services To The Internet With 1 COMMAND!
18:13
zSecurity
Рет қаралды 147 М.
The Most Secure Operating System - Qubes OS
22:19
zSecurity
Рет қаралды 90 М.
Find and Exploit Server-Side Template Injection (SSTI)
8:34
The Cyber Mentor
Рет қаралды 10 М.
GreHack 2021 - Optimizing Server Side Template Injections payloads for jinja2 (EN)
20:58
Hack like Mr Robot // WiFi, Bluetooth and Scada hacking
45:23
David Bombal
Рет қаралды 2,1 МЛН
GHIDRA for Reverse Engineering (PicoCTF 2022 #42 'bbbloat')
17:44
John Hammond
Рет қаралды 219 М.
SSTI for Bug Bounty | Server-Side Template Injection
6:23
Ryan John
Рет қаралды 5 М.
Car Bubble vs Lamborghini
00:33
Stokes Twins
Рет қаралды 45 МЛН