The Cyberguy
The Cyberguy
  • Видео 13
  • Просмотров 18 511
XSS URL Encoding Bypass | Bug Bounty Poc
⚠️Disclaimer⚠️
Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers..
Got XSS via Bypassing URL Encoding I hope you learned from this video and i used XSS Automation tool also that can find Reflected XSS (DOM Objective) so Do like and subscribe this video
Join my Telegram Channel: The Cyberguy
t.me/Thecyberguy17
Github:
github.com/TheCyberguy-17
"Inspired by Lotsec video"
Like share & Subscribe
Thanks For Watching
song used : Doompunk 🤖 (DOOM x Cyberpunk | No Copyright Music Playlist)
Excitement Spreads
#cyberse...
Просмотров: 213

Видео

Autopsy Forensics Tool | Digital Forensic Investigation | Forensic Acquisition | Part -2 |Tutorial
Просмотров 10714 дней назад
⚠️Disclaimer⚠️ Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. Autopsy is a forensic acquisition tool and you can see all modifies, charged and access time also you can find geolocation, communication and ...
AccessData FTK Imager - Forensic Acquisition Tool | Data Recovery | Bit-By-Bit Imaging | PART -1
Просмотров 107Месяц назад
⚠️Disclaimer⚠️ Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. FTK Imager is a forensic acquisition tool for creating Bit-by-bit image, data recovery and analysis digital evidence part 1 is only about crea...
SQL Injection 300$ | Bug Bounty POC | SQLi Vulnerability 2024
Просмотров 1,1 тыс.Месяц назад
⚠️Disclaimer⚠️ Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. SQL Injection attack on live website this is only for educational purpose only don't try to dump data from any website Join my Telegram Channe...
Remote Code Execution (REC) | CVE-2024-7945 | POC
Просмотров 715Месяц назад
⚠️Disclaimer⚠️ Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. Remote Code Ececution Vulnerability on SPIP CVE-2024-7945 | POC One more thing don't used this kind of tool because its send thousands of requ...
Bug Bounty : All In One XSS Automation Tool | Waybackurls | Katana | Dalfox
Просмотров 2,5 тыс.Месяц назад
Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. How to Bug hunter find XSS using automation tool in 2024 This tool have multiple in build tool like waybackurl, gua, subfinder, Dalfox and many ...
How Bug Hunter Hunt SQLi, XSS, CSRF, BROKEN LINK Vulnerability | Acunetix Vulnerability Scanner
Просмотров 1,4 тыс.2 месяца назад
Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. How Bug hunters find vulnerability in 10 minutes using acunetix tool. (Software tool) VulnerabilityType: XSS, SQLi, CSRF, SSRF, Broken link, Dir...
How Bug Hunter Find XSS Using Google DORKS | XSS Vulnerability | Google Dorks
Просмотров 2,9 тыс.2 месяца назад
#POC #bughunter #vulnerable Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. How Bug hunters find XSS vulnerability Using google dorks in 10 minutes Join my Telegram Channel: The Cyberguy t.me/...
Time-based SQL Injections 💉| POC
Просмотров 4252 месяца назад
Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. Time-based SQL Injection POC 2024 Join my Telegram Channel: The Cyberguy t.me/Thecyberguy17 Like share & Subscribe Thanks For Watching song used...
How Bug Hunter Find Vulnerability Using MAGICRECON | Automation Tool 2024
Просмотров 8 тыс.2 месяца назад
Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. How Bug hunters find vulnerability in 10 minutes using automation tool Vulnerabilitys: XSS, CSRF, SSRF, SQLi, Open Redirect and many more Join m...
Open Redirect Vulnerability | Easy Bug Hunting
Просмотров 6772 месяца назад
Open Redirect Vulnerability Easy Bug Hunting 2024 (Manual Automation) Disclaimer : Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing & bug hunting so that we can protect ourselves against the real hackers.. Join my Telegram Channel: The Cyberguy t.me/Thecyberguy17 Tool Link : gith...
Change Your IP Address with One Click - Easy IP Address Hack (2024)
Просмотров 1713 месяца назад
Are you looking to change your IP address quickly and easily? In this video, "Change Your IP Address with One Click - Easy IP Address Hack (2024)", I will guide you through a simple process to alter your IP address with just one click! This method is perfect for beginners and anyone who wants to enhance their online privacy or access region-restricted content. Tool Link : https//github.com/Und3...
Intro -The Cyberguy | Ethical Hacker |
Просмотров 483 месяца назад
Welcome to my channel -The Cyberguy 🌎 I'll share some knowledge of Ethical Hacking , Digital Forensic and Bug Hunting so keep connecting with me. Join my Telegram Channel: The Cyberguy t.me/Thecyberguy17 Do like share and Subscribe to my channel 💻 Turn on notification bell on 🛎 #TheCyberguy #hacker #cyberguy #cybersecurity #ethicalhacking #bughunter #cyberworld #digitalforensics #introvideo #va...

Комментарии

  • @hariomgiri268
    @hariomgiri268 4 дня назад

    Open redirect wala tool bata de bhai ?

  • @slavola159
    @slavola159 6 дней назад

    Можно полную ссылку запроса ? точнее текст

  • @syedali-i5d
    @syedali-i5d 6 дней назад

    I saw all missing security headers.😆

  • @KentGrefiel
    @KentGrefiel 16 дней назад

    How to install that xss automation on kali linux wsl

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 16 дней назад

      Tool link in the description. All the steps given there how to install and run the tool

  • @lctrcmx
    @lctrcmx 16 дней назад

    You have earned a subscriber

  • @杨意逢
    @杨意逢 18 дней назад

    可以教教我怎么挖到sql注入吗

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 18 дней назад

      Currently I'm working on digital forensic video. You can join the Telegram channel link in my description I'll update there

  • @杨意逢
    @杨意逢 18 дней назад

    兄弟 太酷了

  • @unknownff_04
    @unknownff_04 Месяц назад

    gg bruda!

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      Thanks ✨

    • @unknownff_04
      @unknownff_04 Месяц назад

      @@TheCyberguy-e4s Brother I tried this tool but after all process ir is not performing the task thing that 1-25 task , it just says data collection completed, but it does not check for xss

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      @@unknownff_04 Because of web application firewall and application protected by CSP and maybe there is no XSS. Try with vulnerable Website and then try with your target

    • @unknownff_04
      @unknownff_04 Месяц назад

      @@TheCyberguy-e4s Bro I tried with the website that you used, tesphp.vulnweb but still this happens

  • @HAMSAWY_ZERO
    @HAMSAWY_ZERO Месяц назад

    Is the tool free?

  • @Nills7
    @Nills7 Месяц назад

    You're a angel man

  • @girumtsegaye8492
    @girumtsegaye8492 Месяц назад

    😮🎉

  • @slythx5231
    @slythx5231 Месяц назад

    This is basically free proxy and your traffic will go to the provider. Always remember, if it's free then you are the product.

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 Месяц назад

    it’s cool. But this isn’t secured. Give us secured websites using https. Also how to bypass WAF/IPS using sqlmap also the timeouts please🙏

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      Yes I'll make video on that recently I'm working on Digital forensic topics so join telegram channel or turn on notifications bell on...

    • @kolawoleoyedokun7250
      @kolawoleoyedokun7250 Месяц назад

      @@TheCyberguy-e4s have done that already since I have been following you. Appreciated bro❤️⭐️

  • @Evilcrop-1
    @Evilcrop-1 Месяц назад

    Nice tool and video keep it bro

  • @LongTruong-mj9us
    @LongTruong-mj9us Месяц назад

    you sharing tool can't installer, yeh very very much error

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      Maybe you make mistakes in installation process join telegram link in my description I'll tell you how to install that

    • @LongTruong-mj9us
      @LongTruong-mj9us Месяц назад

      @@TheCyberguy-e4s finished, tell me how can fixed

  • @nathans5753
    @nathans5753 Месяц назад

    how to check all?

  • @techytipsntrick
    @techytipsntrick Месяц назад

    why do you search app = apip?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      Because its SPIP that's why I search app=spip

  • @wismamukti
    @wismamukti Месяц назад

    nice tools

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 Месяц назад

    Please all this website found using google dorks. Are they all reported and how do I know some are reported… even if it was reported they ought to have Mitigate it

  • @L7N-b9b
    @L7N-b9b Месяц назад

    How can I download the tool؟

    • @TheCyberguy-e4s
      @TheCyberguy-e4s Месяц назад

      You have to download the trail version on their website

    • @L7N-b9b
      @L7N-b9b Месяц назад

      Is there a cracked version available for this version

  • @ABHISHEKGAMER-GODLIKE
    @ABHISHEKGAMER-GODLIKE 2 месяца назад

    जय श्री राम 🚩🚩

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 2 месяца назад

    Not all the website in this video were vulnerable to the xss payloads right?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Yes not all but some websites are vulnerable I already told in this video 👍🏻

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 2 месяца назад

    cool. How do I change it to use certain city in US or UK

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      You can use VPN For that

    • @kolawoleoyedokun7250
      @kolawoleoyedokun7250 2 месяца назад

      @@TheCyberguy-e4s that’s true. I thought vpn are not too truly. Please could you make free RDP for us with high RAM

  • @kolawoleoyedokun7250
    @kolawoleoyedokun7250 2 месяца назад

    Wow this is so great 💯🎉❤️ Please could you make a video of Bypass Recaptcha, also WAF it’s always been filtered trying with SQL Also if you have a username but don’t know the password

  • @Amithabh
    @Amithabh 2 месяца назад

    Bro when running in https here -l error is coming bro what I can do

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      You can use httpx-toolkit its inbuilt tool in kali

  • @Anthony-43
    @Anthony-43 2 месяца назад

    Hey bro, big fan of your vids, keep it up!

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Thanks buddy Thanks for watching keep supporting me ✨👍🏻

  • @jeremied7945
    @jeremied7945 2 месяца назад

    Why Acunetix more than other recon tool such as magic recon for exemple? Great video !

  • @Dark-Crypt
    @Dark-Crypt 2 месяца назад

    don't try to make people stupid and get views . you are testing on a old damn website where has no firewall on... if you don't stop fooling people i will take steps against you. remember

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      @@Dark-Crypt I just guide people how to use this tool and find Vulnerability

    • @GhostNongs
      @GhostNongs 2 месяца назад

      Mr. Robot 😂

  • @seaagoatt
    @seaagoatt 2 месяца назад

    thanks bro this tool is fully automated and awesome

  • @sadcakebbx7339
    @sadcakebbx7339 2 месяца назад

    how much time did it take for u is there any settings to optimize it? its taking too much time on amass

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      @@sadcakebbx7339 Its take sometime that's why I run full scan after that I record the video and if you want to skip any process Do ctrl+c for that process

  • @ShellCode-oo2cu
    @ShellCode-oo2cu 2 месяца назад

    Acunetix is a popular web vulnerability scanner, primarily used by companies and professional security consultants to detect and fix security issues in web applications. However, it is less commonly used by Bug Bounty Hunters for several reasons: Commercial License: Acunetix is a paid tool, and most Bug Bounty Hunters prefer free or open-source tools like Burp Suite, OWASP ZAP, or more specialized tools. Limited in Complex Vulnerabilities: Automated scanners like Acunetix often miss more complex issues like logic flaws, which manual testing is better suited for. Preference for Open-Source Tools: Tools like Burp Suite and Nmap are more flexible, have strong community support, and allow for more customized testing. Different Target Audience: Acunetix is aimed more at IT security teams within organizations that need regular scans, rather than Bug Bounty Hunters who focus on more advanced or specific vulnerabilities. While Acunetix is valuable for corporate security teams and penetration testers for identifying common vulnerabilities, Bug Bounty Hunters tend to favor tools that allow for deeper, manual exploration.

  • @vedantkulkarni9149
    @vedantkulkarni9149 2 месяца назад

    Could you please make a video on how to install this tool?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Join the telegram link in my bio i send video link there Thanks for watching 😊

  • @vedantkulkarni9149
    @vedantkulkarni9149 2 месяца назад

    Which version of the Acunetix vulnerability scanner are you using?

  • @sunadh9867
    @sunadh9867 2 месяца назад

    how and where we found VDP or bug bounty

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Join the telegram channel, link in my bio or any video description i will share details there Thanks for watching 😊

  • @vedantkulkarni9149
    @vedantkulkarni9149 2 месяца назад

    Which notepad did you use??

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      @@vedantkulkarni9149 in video I used sticky notes

  • @Hackswithbanks-n8c
    @Hackswithbanks-n8c 2 месяца назад

    Inject a sqli injection website and make a tutorial on how you upload shell and deface the website

  • @Hackswithbanks-n8c
    @Hackswithbanks-n8c 2 месяца назад

    Kudos love your work do some on reverse shell

  • @Hackswithbanks-n8c
    @Hackswithbanks-n8c 2 месяца назад

    Kudos love your work do some on reverse shell

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      @@Hackswithbanks-n8c Okay i'll try on that but if you just want to know how to do that so I can make video on Vulnerable website or metasploit framwork.

  • @Hackswithbanks-n8c
    @Hackswithbanks-n8c 2 месяца назад

    Nice job

  • @ferryirawan1575
    @ferryirawan1575 2 месяца назад

    Tools free ?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Its a paid tool

    • @ferryirawan1575
      @ferryirawan1575 2 месяца назад

      @@TheCyberguy-e4s oh ok

    • @pulkitsrivastava9e-389
      @pulkitsrivastava9e-389 2 месяца назад

      Did you get cracked or buyed as it's having a huge price and can you please share the version which you are using of acunetix as I was having 10th but it didn't work properly so where did you get that on telegran? ​@@TheCyberguy-e4s

  • @martenmastre524
    @martenmastre524 2 месяца назад

    How to crak cpanal web bage

  • @tioswashere0
    @tioswashere0 2 месяца назад

    Thanks bro I am a beginner upload more videos like this.

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Thanks for watching Keep motivates me to make videos for your knowledge 👌🏻✨

  • @maxgabrieo
    @maxgabrieo 2 месяца назад

    Do you know what it could be? [+] Httpx Checking alive subdomains... Usage: httpx [OPTIONS] URL Error: No such option: -l cp: cannot stat 'alive.txt': No such file or directory sed: can't read alive_subdomains.txt: No such file or directory sed: can't read alive_subdomains.txt: No such file or directory sort: cannot read: alive_subdomains.txt: No such file or directory cat: alive_subdomains.txt: No such file or directory sed: can't read alive_subdomains.txt: No such file or directory cat: alive_subdomains.txt: No such file or directory

  • @yogeshgodasestar928
    @yogeshgodasestar928 2 месяца назад

    Hi sir plz upload video latest WAF bypass . I have one query. I performed sql injection attack . But there is waf which ristrict words like UNION ALL SELECT / INFORMATION SCHEMA/DATABASE /schema_names . N give 403 forbidden. I replace this words in payload. Now i got vulnerable payload but there is data retrieval problem. Unable to fingerprinting dbms . The backend dbms is not Mysql.

    • @yogeshgodasestar928
      @yogeshgodasestar928 2 месяца назад

      Sir plz help me . I m ready to paid for guidance.

    • @yogeshgodasestar928
      @yogeshgodasestar928 2 месяца назад

      There is 4/5 videos on youtube . Which used tamper script named 'tofla' but it's not available in sqlmap tool n over internet at all .

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Wait for sometimes...

    • @yogeshgodasestar928
      @yogeshgodasestar928 2 месяца назад

      @@TheCyberguy-e4s thanks 🙏

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Bypassing a WAF can be tricky, especially when it blocks common SQL injection keywords. 1) You can try json-baswd sql injection link: www.picussecurity.com/resource/blog/waf-bypass-using-json-based-sql-injection-attacks 2) URL encoding, character encoding, or even whitespace to obfuscate your payload. 3) Blind SQL injection Try this and if any issues try to used chatgpt its helpfull

  • @sohamqt
    @sohamqt 2 месяца назад

    Nice Bhai me bhi seekh raha hu Teri video se ❤

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Thanks brother Keep learning and keep supporting ✨👌🏻

  • @witcher7508
    @witcher7508 2 месяца назад

    bro i want to talk to you

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Yes Say, I am not on social media

    • @witcher7508
      @witcher7508 2 месяца назад

      @@TheCyberguy-e4s why? you have telegram ,insta , discord or something

  • @MD_GESAN
    @MD_GESAN 2 месяца назад

    Keep up with best content 😉

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Thanks buddy Thanks for watching 🚀

  • @doshamiheh9800
    @doshamiheh9800 2 месяца назад

    there is some python errors.. should i install tools automatiquely?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Update kali and python before installing tool

    • @doshamiheh9800
      @doshamiheh9800 2 месяца назад

      @@TheCyberguy-e4s how i can filter a specific tool that i don't want to use ?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      @@doshamiheh9800 in Magicrecon you run that tool right so there are many in build tool work also if you dont want to scan then Ctrl+c to skip that part

    • @doshamiheh9800
      @doshamiheh9800 2 месяца назад

      @@TheCyberguy-e4s it stop the entire program if i do control +c

  • @venkateshhero5967
    @venkateshhero5967 2 месяца назад

    Awesome video brother🎉

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      Thanks buddy Thanks for watching 😊

  • @moshanpil
    @moshanpil 2 месяца назад

    Hi bro, can you discuss the tools commonly used for bug bounty?

    • @TheCyberguy-e4s
      @TheCyberguy-e4s 2 месяца назад

      I'll make a video on this stay tune!!