HackTheBox - Shared

  Рет қаралды 20,325

IppSec

IppSec

Күн бұрын

Пікірлер: 23
@ejnixon
@ejnixon Жыл бұрын
first. thx ippsec for all you do. your videos were a big help to my learning. I just finished oscp and am doing htb cpts now
@sitandstand5469
@sitandstand5469 Жыл бұрын
Is there any bufferoverflow on the exam?
@ianmusyoka9717
@ianmusyoka9717 Жыл бұрын
Am starting oscp in a month... How was the exam if it's okay to ask did you pass?
@ejnixon
@ejnixon Жыл бұрын
@@ianmusyoka9717 i did pass
@ejnixon
@ejnixon Жыл бұрын
@@sitandstand5469 there can be . best to be prepared for anything in course material
@joewharton7735
@joewharton7735 Жыл бұрын
Surprised nobody said this yet but congrats on the pass. Oscp is big 👌👏
@TidyDawg
@TidyDawg Жыл бұрын
It's incredibly inspiring how knowledgeable and calculated you are, thanks for another awesome walkthrough. I'm aiming for OSCP in October next year so my plan is to work through your videos taking notes and then try the boxes the next day to see if I can complete them, I'm studying on the side also.
@yudistiraarya7435
@yudistiraarya7435 Жыл бұрын
great video as always!
@fufu_btw
@fufu_btw Жыл бұрын
One of the greatest box I rooted on HTB ! 😀 Still a great video from ippsec 😉
@SomeGuyInSandy
@SomeGuyInSandy Жыл бұрын
I learned something, thanks :)
@rdx8122
@rdx8122 Жыл бұрын
Nothing is 100% secure, everything and every service on the internet is vulnerable from some or the other vulnerability, but its just our white hat's attack that lacks perfection somewhere, and this thing is proved by our sir 😂❤✌16:59
@FMisi
@FMisi Жыл бұрын
I enjoyed rooting this box. Forgot seems interesting too
@frontpage11111
@frontpage11111 Жыл бұрын
great done
@UmairAli
@UmairAli Жыл бұрын
I have a question about SQL injection, can we use any statement other than "select" ? I mean for Example you found a sql injection but what if the select keyword is not allowed for the current user? can we not inject the website using insert into etc?
@ippsec
@ippsec Жыл бұрын
Your injecting into a select statement to begin with. Could search Ippsec.rocks for sql inject update to see it there.
@AUBCodeII
@AUBCodeII Жыл бұрын
Yes, you can. You can train this on the box CAP from HackingClub
@UmairAli
@UmairAli Жыл бұрын
@@ippsec please do clear this to me as a developer, if I am using mysqli_query(); function and write this: mysqli_query("select * from products where product_cat_id=1"); and when as an attacker I am injecting the parameter id=1, so this means ofcourse we are injecting into a select statement, like you're doing at 14:40, but on 14:40 , you wrote "select group_concat" means here you used the select keyword, so my question was that can we use any other keyword instead of select? like insert into () ? or update() ? this I asked because I wanted to know that is it possible that we can update or insert data using these keywords ,after breaking the query ?
@UmairAli
@UmairAli Жыл бұрын
@@AUBCodeII link please :)
@ippsec
@ippsec Жыл бұрын
@@UmairAli No. Within a union statement you are limited to select.
@xking18
@xking18 Жыл бұрын
Use blame functionality of the git hub to find the exact commit that changed the line
@joewharton7735
@joewharton7735 Жыл бұрын
Nice tip. Cheers
@sand3epyadav
@sand3epyadav Жыл бұрын
Ippsec say, pecie of cake
PicoCTF 2022 #01 - WELCOME & Basic File Exploit
27:23
John Hammond
Рет қаралды 155 М.
HackTheBox - Talkative
1:04:55
IppSec
Рет қаралды 17 М.
Clowns abuse children#Short #Officer Rabbit #angel
00:51
兔子警官
Рет қаралды 77 МЛН
Sigma girl and soap bubbles by Secret Vlog
00:37
Secret Vlog
Рет қаралды 12 МЛН
Опасность фирменной зарядки Apple
00:57
SuperCrastan
Рет қаралды 7 МЛН
Finger Heart - Fancy Refill (Inside Out Animation)
00:30
FASH
Рет қаралды 12 МЛН
HackTheBox - RedPanda
39:35
IppSec
Рет қаралды 33 М.
HackTheBox - Trick
43:18
IppSec
Рет қаралды 28 М.
Gitlab DELETING Production Databases | Prime Reacts
17:27
ThePrimeTime
Рет қаралды 315 М.
Java Is Better Than Rust
42:14
ThePrimeTime
Рет қаралды 151 М.
3 ways to reduce the size of your docker images
17:20
Raghav Dua
Рет қаралды 1,8 М.
HackTheBox - Shoppy
28:38
IppSec
Рет қаралды 28 М.
ROP is DEAD! Kernel Driver Binary Exploitation
16:04
John Hammond
Рет қаралды 21 М.
HackTheBox - Retired
54:46
IppSec
Рет қаралды 18 М.
Winning Facebook (Meta) Hacker Cup Qual Round 2022?
53:55
Neal Wu
Рет қаралды 2,3 МЛН
AMD's Macbook Moment.
15:30
Hardware Canucks
Рет қаралды 6 М.
Clowns abuse children#Short #Officer Rabbit #angel
00:51
兔子警官
Рет қаралды 77 МЛН