OAuth 2.0 for Hackers (Part 2): How to Hack With Insecure OAuth 2 Endpoints

  Рет қаралды 1,162

ethicalPap_

ethicalPap_

Күн бұрын

Пікірлер: 15
@ethicalpap
@ethicalpap 2 ай бұрын
Yall, I got a new camera and didn't realize it was zoomed into my face so much, until after the fact. Enjoy the close up.
@GreatAllen-p4m
@GreatAllen-p4m 2 ай бұрын
no problem fam
@brandonkimm2227
@brandonkimm2227 2 ай бұрын
as a fellow IT dude realizing how underesprented i am in the field, I came here for this
@kittoh_
@kittoh_ 2 ай бұрын
Awesome stuff boss! Waiting for part III. 💯
@abduldione1524
@abduldione1524 2 ай бұрын
great content
@cheffloppa1
@cheffloppa1 2 ай бұрын
🔥
@systemsadministrator2419
@systemsadministrator2419 2 ай бұрын
🎉
@disrael2101
@disrael2101 2 ай бұрын
sir are you offering any reverse eng bootcamp by any chance? i'm willing to enroll and pay for it!
@uzumakiuchiha7678
@uzumakiuchiha7678 2 ай бұрын
Provide link to part 1 in description please
@ethicalpap
@ethicalpap 2 ай бұрын
Done!
@jpphoton
@jpphoton 2 ай бұрын
client id is a weak point over http .. oauth perhaps could be further constrained by imposing a http header say like x-forwarded-for .. but that can be spoofed .. so it ends up being forever non-deterministic .. otherwise we'd have already locked it down .. but alas
@ethicalpap
@ethicalpap 2 ай бұрын
Yep! Client-ID In cleartext is very bad and x-forwarded-for can also lead to SSRF. Love the input here!
@StynerDevHub
@StynerDevHub 2 ай бұрын
🎉🎉🎉
Where People Go When They Want to Hack You
34:40
CyberNews
Рет қаралды 2 МЛН
OAuth 2.0 - a dead simple explanation
9:16
Jan Goebel
Рет қаралды 22 М.
Human vs Jet Engine
00:19
MrBeast
Рет қаралды 113 МЛН
Don't look down on anyone#devil  #lilith  #funny  #shorts
00:12
Devil Lilith
Рет қаралды 47 МЛН
Cool Parenting Gadget Against Mosquitos! 🦟👶 #gen
00:21
TheSoul Music Family
Рет қаралды 32 МЛН
Osman Kalyoncu Sonu Üzücü Saddest Videos Dream Engine 262 #shorts
00:20
30 Programming Truths I know at 30 that I Wish I Knew at 20
17:41
JWT: A Fundamental and Technological Deep Dive
1:00:15
ethicalPap_
Рет қаралды 876
How to Hack OAuth
25:10
OktaDev
Рет қаралды 43 М.
OAuth and OpenID Connect - Know the Difference
10:18
Viraj Shetty
Рет қаралды 9 М.
AI Can't Win If We Hack It.. Learn AI Prompt Injection with GPT
26:17
ASP.NET Core Custom OAuth Server (.NET 7 Minimal Apis C#)
33:24
Raw Coding
Рет қаралды 31 М.
How A Printer Lost A Country $81,000,000
15:58
Cipher
Рет қаралды 772 М.
Hack like Mr Robot // WiFi, Bluetooth and Scada hacking
45:23
David Bombal
Рет қаралды 2,1 МЛН
Human vs Jet Engine
00:19
MrBeast
Рет қаралды 113 МЛН