Live Bug Bounty Hunting | Client-Side Injection Testing on Starbucks Japan (Plus Q&A)

Поделиться
HTML-код
  • Опубликовано: 21 авг 2024

Комментарии • 36

  • @bradnaylor35
    @bradnaylor35 7 месяцев назад +4

    It's interesting to watch a bug bounty hunter's thought process when performing initial sitemapping/recon and then exploring common injection points. Thanks for the video!

  • @cacurazi
    @cacurazi 7 месяцев назад +2

    Yup… seeing someone taking notes before doing the “hacking” stuff I know they are knowledgeable and good things are going to happen. Subscribed!

  • @sw33d-jd1xm
    @sw33d-jd1xm 7 месяцев назад +3

    Awesome video! It's incredibly beneficial for beginners like us. Thanks a lot!

  • @georgekiwarkis8264
    @georgekiwarkis8264 28 дней назад

    i recently discovered this channel and i would like to say that as a knew person to cybersecurity you motivate me and give me alot of knew information to keep going

  • @kittoh_
    @kittoh_ 7 месяцев назад

    Please don't stop doing this stuff! They're gold!

  • @user-oy6vv3go6d
    @user-oy6vv3go6d 7 месяцев назад +1

    Underrated stream

  • @HackAll-ue3sr
    @HackAll-ue3sr 7 месяцев назад +1

    I love you sir you are making our minds to open on a level of urs ❤❤❤

  • @walterwhite-du4rn
    @walterwhite-du4rn 7 месяцев назад

    You are gem for me..I learned a lot of burp suite using techniques from you.Thank you❤

  • @user-zd5tz4sz5o
    @user-zd5tz4sz5o 7 месяцев назад +2

    how to choose the right subdomain after reconnaissance to start testing correctly?
    I often receive hundreds of subdomains and do visual reconnaissance, but often I don’t understand where to start.
    It would be very interesting to see a video on this topic, since many hunters miss this in their creativity on RUclips

  • @bakeery
    @bakeery 7 месяцев назад

    Thank you for keeping your words :)

  • @Shivamhirwani
    @Shivamhirwani 7 месяцев назад +1

    Love this stream 😊

  • @user-jo4ko7si6s
    @user-jo4ko7si6s 4 месяца назад

    great source
    Thanks

  • @steiner254
    @steiner254 6 месяцев назад +1

    Superb Cool

  • @1a4s4l7
    @1a4s4l7 7 месяцев назад

    24:35 - 3 approaches
    30:24 - insertion points

  • @z1ro_zb
    @z1ro_zb 7 месяцев назад

    Thanks for the content!

  • @aliuzun8885
    @aliuzun8885 5 месяцев назад

    Ty

  • @b4arabe132
    @b4arabe132 4 месяца назад

    love u man

  • @Booom1444-_-
    @Booom1444-_- 7 месяцев назад +8

    Please create RUclips video content for learning from beginners to advanced levels.

    • @HAzorTeam
      @HAzorTeam 7 месяцев назад

      Roadmap 2024 Bug Bounty Hunting and plataform earn money thanks

    • @eyephpmyadmin6988
      @eyephpmyadmin6988 7 месяцев назад +1

      No one wants the beginners videos theirs millions out their we need the most advanced of the advanced. Trust me youll bottleneck with all the beginner stuff. I rarely see any advanced stuff

    • @SumitYadav-lr5vy
      @SumitYadav-lr5vy 6 месяцев назад

      ​@@HAzorTeamwhat do you mean?

  • @master-manhood
    @master-manhood 7 месяцев назад +1

    Hi R-s0n, If you could provide the timestamp in your RUclips video, it would be great, bcoz if often come back again and search for a particular piece.
    If you can would be much appreciated.

  • @BEKTIPS
    @BEKTIPS 7 месяцев назад

    Make a video for a beginners like in which bug do we must focus on and your methodologies and show us the first bug you search for in a web app pls

  • @YettouYettou-uj9du
    @YettouYettou-uj9du 7 месяцев назад

    I see xss-protection:1
    And amazon cloudfront
    How do you deal with thes ? Spesialy the second one because will block every single payload injectiin

  • @brs2379
    @brs2379 7 месяцев назад

    Any ideas on how to escalate CSS injection on a site where script tags and all event handlers are blocked by WAF?

  • @brendan8665
    @brendan8665 7 месяцев назад

    Do you pay for proton vpn premium? I wonder if I need that instead

  • @BugbountyPOCs41
    @BugbountyPOCs41 7 месяцев назад +1

    what are your laptop specs?

  • @anurag.30302
    @anurag.30302 7 месяцев назад

    why the hell you don't use chrome that will help in language translation on that page itself

  • @-Engineering01-
    @-Engineering01- 7 месяцев назад

    Seems being a security professional means using built-in software to find vulnerabilities. I didn't thought that way, i used to thought security professionals were so good at coding. But seems most of them are totally garbage at that(i don't mean you), so i left pursuing it and went to software engineering.
    I would rather to develop burp suite itself, rather than doing bug hunting using it.

  • @rabin2439
    @rabin2439 2 месяца назад

    Bro come backkkkkkkkkkkkkkkkk

  • @uttarkhandcooltech1237
    @uttarkhandcooltech1237 7 месяцев назад

    thanks sir

  • @user-oo4on5lg9m
    @user-oo4on5lg9m 6 месяцев назад

    Sorry how can I join your discord server 😞

  • @theairsharma
    @theairsharma 7 месяцев назад

    2nd,runner up

  • @orbitxyz7867
    @orbitxyz7867 7 месяцев назад

    2nd

  • @aashutoshlodhi1029
    @aashutoshlodhi1029 7 месяцев назад

    1st

  • @user-fb4pi6yf6o
    @user-fb4pi6yf6o 7 месяцев назад

    Thank you , I love you