PortSwigger Labs - Reflected XSS into HTML context with all tags blocked except custom ones

  Рет қаралды 4,756

CodeVerd

CodeVerd

Күн бұрын

Пікірлер: 32
@ImPerhapsLater
@ImPerhapsLater Жыл бұрын
Great explanation of why this attack works... so many others just post the script as their "solution" without explaining how to get there. Thank you!!
@التدريسالالكتروني
@التدريسالالكتروني Жыл бұрын
man you are amazing in explaining !! please continue solving labs
@东倪
@东倪 Жыл бұрын
Your explanation is very insightful, thank you
@krishgohel9403
@krishgohel9403 Жыл бұрын
what an explaination bro 😇 so underrated channel
@OhmKumar-j5f
@OhmKumar-j5f 10 ай бұрын
awesome explanation dude cleared all doubts please cover all labs of xss
@ggm3743
@ggm3743 Жыл бұрын
what a wonderful explanation! How did you become this good in html, js...? I am trying to break into bug hunting but I dont know how much js should i actually learn? I know (university-level) C, Java and Python so its easier to understand Js for me now. Should i learn js and train on Portwigger labs at the same time or what would you recommend? Thank you :)
@nimaasadi730
@nimaasadi730 Жыл бұрын
Great explanation with great teaching
@solvedandlearned3878
@solvedandlearned3878 11 ай бұрын
Is it necessary to have the tabindex even if we include our id value in the url hash.?
@anamariedevera8635
@anamariedevera8635 9 ай бұрын
I love your channel
@amol24by7
@amol24by7 Жыл бұрын
Awesome explanation
@pinkypink2410
@pinkypink2410 Жыл бұрын
very useful,thank you!
@yuraekim9389
@yuraekim9389 Жыл бұрын
You are really good! Thank you
@nayar_km
@nayar_km 8 ай бұрын
awesome explanation
@التدريسالالكتروني
@التدريسالالكتروني Жыл бұрын
please make a video about this lab Reflected XSS in a JavaScript URL with some characters blocked
@imgyanesh_0
@imgyanesh_0 5 ай бұрын
I am also doing same as you but after open xss.html page it write refused to connect What can I do sir
@mukoshmanob9240
@mukoshmanob9240 Жыл бұрын
sir, how will you know that 'onload' event not work? how i understand
@lIlIllll1
@lIlIllll1 Жыл бұрын
YOU ARE GREAT
@youssefblt9839
@youssefblt9839 10 ай бұрын
thank s for the explaination too
@sscoconut1265
@sscoconut1265 10 ай бұрын
what does the # mean bro? does it mean calling a specific id?
@Shaik_Afrid
@Shaik_Afrid Жыл бұрын
bro how ur doing this i mean in order to understand all these stuff how much js should i learn
@knowledgeboxbd9625
@knowledgeboxbd9625 2 жыл бұрын
How you know that this search box is vulnerable to tabintex?
@CodeVerd
@CodeVerd 2 жыл бұрын
When u use custom payload ,and if you know it's vulnerable, mostly u must use "tabindex" .In real world we need to check if tabindex is allowed or not
@knowledgeboxbd9625
@knowledgeboxbd9625 2 жыл бұрын
@@CodeVerd Thanks bro now i understand .🥰
@CodeVerd
@CodeVerd 2 жыл бұрын
@@knowledgeboxbd9625 ♥️
@abhishekbiswakarma1541
@abhishekbiswakarma1541 Жыл бұрын
brother i am using the same payload but the lab is not solving
@warwolf5154
@warwolf5154 Жыл бұрын
yes form also its not working
@ginsteward9673
@ginsteward9673 2 жыл бұрын
thanks my bro. it's usefull
@CodeVerd
@CodeVerd 2 жыл бұрын
Thanks mate
@محمّد.09
@محمّد.09 Жыл бұрын
nice
@cyber_torhat
@cyber_torhat Жыл бұрын
I feel like you say "Let's get started" intentionally in a slightly different way. Lol
@hillclise1034
@hillclise1034 2 жыл бұрын
Amazing clips . Want more views? -> Promo SM!!
Reflected XSS in canonical link tag
8:37
z3nsh3ll
Рет қаралды 4,2 М.
It works #beatbox #tiktok
00:34
BeatboxJCOP
Рет қаралды 41 МЛН
VIP ACCESS
00:47
Natan por Aí
Рет қаралды 30 МЛН
Суть 1С программирования за 25 минут
26:44
Желтый клуб — 1С программирование
Рет қаралды 415 М.
This New Speculation API Will Make Your Site 10x Faster
20:55
Web Dev Simplified
Рет қаралды 76 М.
How is this Website so fast!?
13:39
Wes Bos
Рет қаралды 1,3 МЛН
Reflected XSS with event handlers and attributes blocked.
10:55
AngularJS DOM XSS Attack - Understanding $on.constructor
25:13