Directory Traversal | Complete Guide

Поделиться
HTML-код
  • Опубликовано: 1 авг 2024
  • In this video, we cover the theory behind Directory Traversal vulnerabilities, how to find these types of vulnerabilities from both a white box and black box perspective, how to exploit them and how to prevent them.
    ▬ ✨ Support Me ✨ ▬▬▬▬▬▬▬▬▬▬
    Buy my course: bit.ly/30LWAtE
    ▬ 📖 Contents of this video 📖 ▬▬▬▬▬▬▬▬▬▬
    00:00 - Introduction
    00:27 - Web Security Academy Course (bit.ly/30LWAtE)
    01:37 - Agenda
    02:22 - What is Directory Traversal?
    10:40 - How to Find Directory Traversal Vulnerabilities?
    16:50 - How to Exploit Directory Traversal Vulnerabilities?
    20:28 - How to Prevent Directory Traversal Vulnerabilities?
    21:55 - Resources
    22:15 - Thank You
    ▬ 🔗 Links 🔗 ▬▬▬▬▬▬▬▬▬▬
    Video slides: github.com/rkhal101/Web-Secur...
    Web Security Academy OS Command Injection: portswigger.net/web-security/...
    Rana's Twitter account: / rana__khalil
    Hacker Icons made by Freepik: www.freepik.com
  • НаукаНаука

Комментарии • 39

  • @RanaKhalil101
    @RanaKhalil101  Год назад +6

    📚📚 Don't want to wait for the weekly release schedule to gain access to all the videos and want to be added to a discord server where you can ask questions? Make sure to sign up to my course: bit.ly/30LWAtE

  • @paco6266
    @paco6266 Год назад +4

    Fantástico Rana, como siempre 👏👏👏

  • @RafaelZampiva
    @RafaelZampiva Год назад +4

    best teacher ever. thanks from brazil

    • @Rubalix
      @Rubalix Год назад +1

      Thanks from America too! Also love from 🇺🇸 too the people of 🇧🇷 .

  • @gonzors
    @gonzors Год назад +1

    Great video, keep rocking!

  • @acronproject
    @acronproject Год назад

    Thanks for this Ms. Khalil

  • @ucan2971
    @ucan2971 4 месяца назад

    Youre Good teacher thank you for helping me❤❤❤

  • @GilligansTravels
    @GilligansTravels Год назад

    Hail Rana! Great videos and course!

  • @kanimani8226
    @kanimani8226 Год назад +1

    الله يوفقك يا رانا ويحميكي

  • @TishTalksTech
    @TishTalksTech Год назад

    Excellent!

  • @nisarpatel7179
    @nisarpatel7179 6 месяцев назад

    Assalam Walaikum Rana , i found your channel through Devid bombal suggestion. very helpfull content

  • @Safvanviber-xm3pn
    @Safvanviber-xm3pn 10 месяцев назад +1

    Thanks ❤

  • @learnTv1
    @learnTv1 3 месяца назад

    thank you Ms khalil for your greate videos

  • @user-fp7fs9xl2t
    @user-fp7fs9xl2t 4 месяца назад

    Thanks Rana ...

  • @the_sandman00
    @the_sandman00 Год назад +2

    Doesn’t the vulnerability explained at first section called Local File Inclusion (LFI)? 🤔

  • @cronjobtest7063
    @cronjobtest7063 Год назад

    Thanks mam, great guidance 🫡

  • @narsimharao8565
    @narsimharao8565 Год назад

    Thanks miss

  • @shabbirshaik3702
    @shabbirshaik3702 6 месяцев назад

    Your videos are enough for 4 yrs experience guy to crack the interviews

  • @ShafatShadi-dh3ro
    @ShafatShadi-dh3ro Год назад

    Thanks mis

  • @mootje0152
    @mootje0152 11 месяцев назад

    where can u test the vulberabilities in the browser or do you need a special application

  • @omareldanasoury4597
    @omareldanasoury4597 Год назад

    Thank you Rana! I will buy the course as soon as I can inshallah [egypt❤palestine]

  • @orbitxyz7867
    @orbitxyz7867 Год назад +2

    business logic vulnerability please

  • @user-gg8ol4lv1y
    @user-gg8ol4lv1y 7 месяцев назад

    as a teacher i like you

  • @Rubalix
    @Rubalix Год назад +1

    Can you do a video on broken access control next?

    • @RanaKhalil101
      @RanaKhalil101  Год назад

      That's already done: ruclips.net/video/_jz5qFWhLcg/видео.html&ab_channel=RanaKhalil

  • @gokulkrishnan4307
    @gokulkrishnan4307 Год назад

    Love from India 🇮🇳❤️

  • @backer21
    @backer21 9 месяцев назад

    Please include a certification for your course(web security academy course)🙏🏼❤️

  • @ateci0
    @ateci0 Год назад

    You're a goddess thank you!

  • @DEADCODE_
    @DEADCODE_ Год назад

    Mashallah ya Rana

  • @gopikrishna679
    @gopikrishna679 15 дней назад

    i dont think that directory traversal is a injection vulnerability, i think its part of broken access control vulnerability

  • @suresh_shankar
    @suresh_shankar 9 месяцев назад

    Place make one videos for API Pentesting

  • @user-rz6hm7xs4h
    @user-rz6hm7xs4h 6 месяцев назад

    💯💯💯

  • @MarcelN1980
    @MarcelN1980 Год назад

    Hey, can you please check why I'm unable to post on Discord? :( Bought your course, joined Discord and unable to post anything. Thanks a lot! :)

    • @RanaKhalil101
      @RanaKhalil101  Год назад +1

      Hi Marcel! There's a form in the course that you need to fill out before getting access to post comments on the discord channel. If you've submitted the form and still have not gotten access please send me a message at info.ranakhalil@gmail.com

    • @MarcelN1980
      @MarcelN1980 Год назад

      @@RanaKhalil101 Thank you so much, I've just filled in the form. Sorry for the trouble :)

  • @Ferifroyo
    @Ferifroyo Год назад

    Bismillah
    Semoga ada subtitle bahasa Indonesia kaka Rana Cantik dan manis

  • @Audionic1
    @Audionic1 Год назад

    From Pakistan

  • @roastedChick3n
    @roastedChick3n Год назад

    Thank you again for uploading valuable video lesson❤️ I hope you read my dm in twitter