Information Disclosure - Authentication Bypass Via Information Disclosure

  Рет қаралды 194

z3nsh3ll

z3nsh3ll

Күн бұрын

Support This Channel
======================
Please like and subscribe, it means a lot!
Check out my cybsercurity and webdev site
www.webhacks.io
Please buy me a coffee so I can continue to make content.
buymeacoffee.c...
Join our Discord
/ discord
Here we make use of a HTTP trace request in order to provoke the server into revealing a custom HTTP header that is appended to our requests. We can use the knowledge of this custom header to spoof our location and allow admin access to the web app. This is considered an information disclosure vulnerability because TRACE requests are usually disabled on a production web server.

Пікірлер: 1
@breakoutgaffe4027
@breakoutgaffe4027 3 ай бұрын
Nice video! Please increase the font size though
1% vs 100% #beatbox #tiktok
01:10
BeatboxJCOP
Рет қаралды 67 МЛН
Леон киллер и Оля Полякова 😹
00:42
Канал Смеха
Рет қаралды 4,7 МЛН
Cat mode and a glass of water #family #humor #fun
00:22
Kotiki_Z
Рет қаралды 42 МЛН
Kerberos Authentication Explained | A deep dive
16:52
Destination Certification
Рет қаралды 373 М.
How HACKERS Send Malware | DNS Spoofing
11:46
Cyb3rMaddy
Рет қаралды 63 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН