$2,500 Leaking parts of private Hackerone reports - timeless cross-site leaks

Поделиться
HTML-код
  • Опубликовано: 21 авг 2024

Комментарии • 18

  • @BugBountyReportsExplained
    @BugBountyReportsExplained  2 года назад +6

    Thanks for watching the video and welcome to the comment section. Make sure to leave a like to help me grow my channel and reach more hackers like you👍

  • @unurbayaramarsaikhan1362
    @unurbayaramarsaikhan1362 2 года назад

    You are awesome. I have learned so much from your channel. And Congratulations for you last 1000$ bounty

  • @tyaprak
    @tyaprak 2 года назад

    Job very well done brother, appreciated.

  • @-bubby9633
    @-bubby9633 2 года назад

    Absolutely fantastic explanation thanks! Very easy to understand. Was interested throughout to see how this could be effectively abused, and was kicking myself when I realized "oh yes, stealing partially known values containing sensitive info such as cookiename+Val or headername+Val. Duhhh of course 😅". Very educational

  • @FUN-sy5lr
    @FUN-sy5lr 2 года назад +1

    Before i will watch i will thank you for your videos you are great 😍

  • @krishanranaweera2961
    @krishanranaweera2961 2 года назад

    Wow..amazing content

  • @user-ng6pf1sw7f
    @user-ng6pf1sw7f 2 года назад

    Interesting, but modern browsers have a samesite cookie value of lax. The browser does not send the cookie...

    • @BugBountyReportsExplained
      @BugBountyReportsExplained  2 года назад

      True. Those attacks these days mostly work in websites that explicitly set their SameSite to None, like RUclips

  • @mnageh-bo1mm
    @mnageh-bo1mm 2 года назад

    Great video , but i wasn't able to fully understand the Timeless XSleak tecnique

  • @howplz
    @howplz 2 года назад

    Hi bro can you explain to me how you did to understand every tech word
    And if you're may be translated the word to ur native language??
    Please i need an answer