[HINDI] Cross Site Request Forgery (CSRF) Explained | Causes and Exploitation | How to be Safe?

Поделиться
HTML-код
  • Опубликовано: 23 янв 2025
  • НаукаНаука

Комментарии • 134

  • @FahadAli-ot5kn
    @FahadAli-ot5kn 4 года назад +5

    I also use django framework and my site also slow but now i am using your method it's really good for me ....

  • @taufiqshaikh7516
    @taufiqshaikh7516 4 года назад +9

    positive attitude. nice video

  • @princeagrawal
    @princeagrawal 4 года назад +10

    In spring security it is done automatically.
    So , no need to do it manually, simply use spring form.

    • @sanukumarjha
      @sanukumarjha 2 года назад

      correct

    • @amangaur4231
      @amangaur4231 2 года назад

      In django also

    • @paras8558
      @paras8558 23 дня назад +1

      Bhai mai ak registration kar raha tha maina apna ak digit phone number galat dal deya toh mere information dusre ke pass toh nhi chali jay😢

  • @hemant_vlogs999
    @hemant_vlogs999 6 лет назад +1

    Sir. baat yh hai ki mera whatsapp status ka channel hai.. Usko maine monetization ke liye apply kiya tha but oh reject ho gya tha.. Dobara phir se apply kiya hu. Oh review mein hai.. Sir mere channel pa koi copyright video show nhi ho rha hai.. Ap bataiye mai kya kru.. Plz plz help me.. Sir ji. Plz help

  • @Dhruv-te6dy
    @Dhruv-te6dy 6 лет назад +5

    nice one bro !!! keep it bro !!!

  • @sureshmaurya8661
    @sureshmaurya8661 4 года назад +2

    If we can steel cookies in XSS than can't we steel token?
    Or if we had cookies (by steeling) then we need token or not to login?

  • @disha_on_air
    @disha_on_air 8 месяцев назад

    Great, highly recommend, must watch, appreciate it

  • @piu6483
    @piu6483 Месяц назад

    Bhaiya meine ek website mei login kar rakhi thi abhi jab us website pe jati hoon tab get csrf error karke dikhata hai aur login ka option bhi nhi aa rha ha ye koyi problem create kr skta hai kya please help kariye

  • @mohdshadab8255
    @mohdshadab8255 2 года назад

    Zabardast bhai...well explained

  • @JaleesHaider64
    @JaleesHaider64 5 месяцев назад

    What if the websites using query building like in laravel OEM eqvelent query builder and not using Get params through url so what should we do for sql injunction

  • @abhijeetnigam2630
    @abhijeetnigam2630 3 года назад

    damm good explanation. keep it up brother.

  • @kamleshkumar-vm8cj
    @kamleshkumar-vm8cj 2 года назад

    Great Explanation Bro...

  • @ppratik10
    @ppratik10 6 месяцев назад

    Very Well Explained .

  • @skselim8536
    @skselim8536 2 года назад

    Great video! 👍

  • @gauravasthana1
    @gauravasthana1 5 лет назад +4

    Every time bank ask OTP before any transaction... So how it works with OTP

    • @ashutoshthakur9542
      @ashutoshthakur9542 5 лет назад +1

      Bank ask the otp because they hit that api on that time in which twillio messge is just send so developer just generate random number and send in msg and that number also store in database. So on verify otp developer just check the entered otp and saved otp in database .if they same then you go inside otherwise return errro..

    • @princeagrawal
      @princeagrawal 4 года назад

      OTP is no where related to CSRF, its just to add extra layer of security

  • @kalyaninagre2148
    @kalyaninagre2148 Год назад +1

    Thank you so much..... you explained it well....!!!!!!!!!!!!!!!!

  • @me_sami05
    @me_sami05 2 года назад

    Great Explanation!

  • @shivprakash550
    @shivprakash550 4 года назад

    Mai ek form bhar rha hu jisme kuchh documents upload hona hai but bar-bar CSRF ATTACK likh kar a ja rha hai.
    Mujhe qya karna chahiye .
    Use OK karna chahiye ya fir refresh karna chahiye ?
    Please tell me

  • @sagaromer8385
    @sagaromer8385 2 года назад +1

    bhai theory or practical same video me hi bata diya karo kyuki kabhi kabhi video milta nahi hai practical ka

  • @rounakkhandelwal9947
    @rounakkhandelwal9947 4 года назад +2

    Good one bro !
    I wish I could get a handon kind of video where it is more clear...dont take me otherwise , theory is not bad

  • @ansarisaqib242
    @ansarisaqib242 6 лет назад +1

    sir mujhe bs bata dijiye ki koi lanhuage ko linux me chalane k liye sabse pahle lya likhte hain...
    aur usr/bin iska kya mtlab hai...

    • @AhmadKhan-kv7mb
      @AhmadKhan-kv7mb Месяц назад

      bash.user/bin ek directory hai linux file system me, usr.is me system ke binaries hite hai,

  • @NilabhRajpoot
    @NilabhRajpoot 3 года назад +1

    Sir 5:00 pe ek ladki ja rhi hai aapke pichhe se kaun hai wo 😂😂
    Sir 08:02 pe bhi 😂

  • @hostgazer
    @hostgazer 9 месяцев назад

    bhai apke 3 no wala process sahi laga but php me kia same process se kam kia ja sakta ?

  • @Chaitanya_karkase
    @Chaitanya_karkase 4 года назад +1

    I watch this video I explained all to hacking good voice bro

  • @sujitgunjal2396
    @sujitgunjal2396 9 месяцев назад

    Can he complaint at cyber police and can we get track ?

  • @funnycoder_op_7812
    @funnycoder_op_7812 2 года назад +1

    how do you know ki woh login he hai

  • @jaishriramOnly
    @jaishriramOnly Год назад

    ese request ke liye cookies or token bhi chaiye hota hai usko kese koi set kar skta hai ?

  • @ASHUjiet
    @ASHUjiet 3 года назад

    Nice video bhai👍

  • @ashwinkishnam5341
    @ashwinkishnam5341 4 года назад +1

    does 2 factor authentication blocks these type of transactions by asking for otp or else?

  • @udaishankar8616
    @udaishankar8616 5 лет назад

    One basic question: Does the authentic user have to be logged into banking application or atleast have a cookie that has not expired till now, for the malicious url to be effective?

    • @сойка-и8й
      @сойка-и8й 4 года назад

      Yes , that why it is advisable to logout of application when not in use.

  • @deepbaaaaaag
    @deepbaaaaaag 5 лет назад +1

    CSRF ke liye link generate ki jati uski coding kaise hoti h aap dikha skte hai???

  • @princepatel9107
    @princepatel9107 5 лет назад +2

    AAA gya samgh me 👌👌

  • @NxttLvlClipss
    @NxttLvlClipss 6 месяцев назад

    Bro How we protect our wordpress website from these types of forgery attack. Please Reply Bro.

  • @aayeshashaikh5043
    @aayeshashaikh5043 5 лет назад

    m ek web p register krh th yr usme csrf tokens do no match plz explain

  • @altafshaikh8778
    @altafshaikh8778 4 года назад

    What about OTP confirmation for transaction?...when a fund is transferring...it ask for otp then only the transaction gets completed...

  • @rjedits2284
    @rjedits2284 2 года назад

    Bhai osm explain Kiya hai apne

  • @shubhamtrivedi2155
    @shubhamtrivedi2155 5 лет назад

    Bhai plzzz kabhi practical bhi laya kar itni theory to kabhi college ki bhi palle nahi padti

  • @D4rkH4ck3r5
    @D4rkH4ck3r5 4 года назад

    bhai otp ka masla nahi hota hai kya???

  • @aditya14211
    @aditya14211 6 лет назад +1

    *jab me video upload kar rahahu you tube ushe reject kar de raha hai so how to upload my video*

  • @nishthaagarwal8878
    @nishthaagarwal8878 4 года назад +2

    Hi Ansh, first of all thanks for the detailed clarification, here is one question if hacker does not know the victim then how transferred will be transferred with out adding the beneficiary, how could it be possible. Thanks in advance

    • @derrickarthur2295
      @derrickarthur2295 3 года назад

      i guess it's quite randomly asking but does anybody know of a good site to watch new movies online?

  • @ShrikantNadgauda
    @ShrikantNadgauda Год назад

    Great🎉🎉

  • @vaanuthakur1761
    @vaanuthakur1761 4 года назад +1

    Love you sir ji...

  • @sathyaprakashsahoo7291
    @sathyaprakashsahoo7291 6 лет назад +1

    Nice one 👍

  • @hemsagarpatel8992
    @hemsagarpatel8992 5 лет назад +2

    nice bro!!!

  • @cyberxprite
    @cyberxprite 3 года назад

    Bhai. Ye part 11 hai.. iske pahele ke parts..??🥺🥺

  • @drawingartist2754
    @drawingartist2754 6 лет назад +1

    Nice video bro u are heal hacker

  • @sajalgupta5103
    @sajalgupta5103 4 года назад

    Nice explanation

  • @kamanchivarnika
    @kamanchivarnika 2 года назад

    REQUEST - How many programming languages have you learned?

  • @amanpaswan5962
    @amanpaswan5962 5 лет назад

    Very good jankari

  • @ashutoshthakur9542
    @ashutoshthakur9542 5 лет назад +1

    Bro first learn laravel and cake then you know how much secure the csrf token. Bank are not that stupid.

  • @sagarraj2025
    @sagarraj2025 5 лет назад

    Superb bhai

  • @ShortVideo-hb9ir
    @ShortVideo-hb9ir 3 года назад

    Fabulous bro

  • @tanmaykumar9277
    @tanmaykumar9277 3 года назад

    Identify the referrer, Ye kaise karra jaata hai?

  • @DevendraSharma-zp8qx
    @DevendraSharma-zp8qx 6 лет назад +1

    Nice video bro

  • @jaganpradhan4567
    @jaganpradhan4567 2 года назад

    Unknown victim ko kese link send kare....?

  • @MrVinaybhandari
    @MrVinaybhandari 5 лет назад +2

    Nice thanks. Where are you living bro ?

    • @luvkashyap
      @luvkashyap 4 года назад

      based on background and people passing, probably EUROPE

  • @nagarajmurgod8862
    @nagarajmurgod8862 4 года назад

    bro mast explaine kiya hey aap

  • @TariqAhmed_
    @TariqAhmed_ 4 года назад

    It's great 😌

  • @piyushgaur6975
    @piyushgaur6975 3 года назад

    Gajab bhai

  • @harshdranjan1980
    @harshdranjan1980 5 лет назад

    Tu konse platform pr hunt krta hai bhai wo batan....

  • @spycake0019
    @spycake0019 Год назад

    bhai tu foreign meh rehta heh??

  • @saadhuyadav1230
    @saadhuyadav1230 3 года назад

    Lovely ☺️

  • @yogendrarajput1858
    @yogendrarajput1858 5 лет назад

    HTML file kab execute hoti hai Kuch bhi bol rhe ho userid store on a session, not cookies

    • @AhmadKhan-kv7mb
      @AhmadKhan-kv7mb Месяц назад

      Bhai, sahi bol rha hai, tu kya bolta hai kuch bi.cookies me hi session id sstore hoti hai.Tu hacker hai kin vo,

    • @AhmadKhan-kv7mb
      @AhmadKhan-kv7mb Месяц назад

      Waise aj ki raat song sunna tumhe bohot pasand hai?Hai na?💀💀

  • @nitinkumar-tu5dv
    @nitinkumar-tu5dv 5 лет назад +5

    konsi country me betha hua h :3

  • @lifeisbeautiful5998
    @lifeisbeautiful5998 3 года назад

    How to remove virues from cracked sofware?

  • @prosantachowdhury3617
    @prosantachowdhury3617 5 лет назад +1

    Super sir

  • @known_black_hat3158
    @known_black_hat3158 4 года назад

    Plz can u teach me hacking on other platform with uncensord network plz

  • @SecurityTalent
    @SecurityTalent 3 года назад

    So so thanks

  • @satishr7288
    @satishr7288 5 лет назад +1

    Hi Bro
    Please upload all videos in playlists.

  • @pranjaligupta8524
    @pranjaligupta8524 3 года назад +1

    amazing

  • @harshsharma13.09
    @harshsharma13.09 4 года назад

    Nice Explanation but... why do you shake your body?

  • @vishnucs47
    @vishnucs47 5 лет назад +1

    How about cookies less browser!

  • @prittamsingh1834
    @prittamsingh1834 5 лет назад +1

    Thanks

  • @shellgenius
    @shellgenius 4 года назад +1

    Thank you sir like movie
    WHOAMI

  • @VishalSharma-rn7mt
    @VishalSharma-rn7mt Год назад

    Awesome

  • @Finalsolution_repairing
    @Finalsolution_repairing 6 лет назад +2

    Nice yrr

  • @shellgenius
    @shellgenius 4 года назад

    Upload a anydesk , team viewer how is work

  • @mdmujju1469
    @mdmujju1469 4 года назад +2

    good

  • @mohitnahar2933
    @mohitnahar2933 5 лет назад +2

    Nice voice

  • @shubhamkaneri1191
    @shubhamkaneri1191 3 года назад

    Nice make more videos

  • @shivashakya1434
    @shivashakya1434 5 лет назад

    NIC ❤

  • @UACode-jl9ms
    @UACode-jl9ms 3 года назад

    yeah jo parha rha ic ko khud b nhi pta kiya hai yeah ..he dnt have any knowledge

  • @vishuhanda1837
    @vishuhanda1837 5 лет назад +1

    bhai apni knowledge achi kr...video banane ke liye video mat bnao.....give some authentic info

  • @snowgurl330
    @snowgurl330 5 лет назад +10

    I wish i could understand him.

  • @souravd2661
    @souravd2661 Год назад

    great

  • @ZeeshanRaza-nc6pd
    @ZeeshanRaza-nc6pd 3 года назад

    Nice bro

  • @SeriousboyzSB
    @SeriousboyzSB 3 года назад

    Bhai aap mst ho 😎😎🖖🖖

  • @motivationalquotes_365
    @motivationalquotes_365 5 лет назад +1

    Bhai. practical video's bnaya kro.

  • @irumishfaq5245
    @irumishfaq5245 5 лет назад

    plz show this attack practically

  • @RaviRavi-mj1le
    @RaviRavi-mj1le 2 года назад

    bhai teri voice h dum h ...woofer se bass nikalta h

  • @tousifmaikmaik4781
    @tousifmaikmaik4781 4 года назад

    window.onload = function() {chooseTab(unescape(self.location.hash.substr(1)) || "1");}

  • @testmail3875
    @testmail3875 9 месяцев назад

    still usefull

  • @akleshchaudhary5025
    @akleshchaudhary5025 9 месяцев назад

    How to crack router password

  • @RakeshKumar-ox6vq
    @RakeshKumar-ox6vq 5 лет назад +2

    Try

  • @Thelostblud
    @Thelostblud 3 года назад

    Bro is in foreign

  • @faizannaseem7095
    @faizannaseem7095 5 лет назад

    Practical link please den

  • @RakeshKumar-ox6vq
    @RakeshKumar-ox6vq 5 лет назад

    good

  • @TopTrendingYt
    @TopTrendingYt 5 лет назад

    Plz explain it practicaly

  • @ujjwaldeep5175
    @ujjwaldeep5175 4 года назад

    *Bold*

  • @meghabhawkar7539
    @meghabhawkar7539 4 года назад

    U r intelligent but I got confused