[HINDI]HOW TO FIND XSS VULNERABILITY | EXPLAINED WITH PRACTICAL| | BUG BOUNTIES METHODS |EP#4🔥

Поделиться
HTML-код
  • Опубликовано: 21 авг 2024
  • Hello guys, aaj ki iss bug hunting series in hindi ki video mein maine aapse baat ki hai cross site scripting vulnerability kaise find karte hain with the help of burp suite. Iss video mein maine aap logo ko acche se samjaya hai ki ye xss hota kya hai aur isko kaise find karte hai. Pura step vise cheezo ko bataya gaya hai. I hope aapko video se kuch value mile.
    Links to resources-:
    drive.google.c...
    I WILL UPDATE THE LINK TO PORTSWIGGER WEBSITE TOMMOROW
    (THIS VIDEO IS JUST FOR EDUCATION PURPOSE, I DON'T WANT TO PROMOTE ANY ILLEGAL STUFF OVER HERE. PLEASE USE THIS GUIDE FOR ETHICAL THINGS.)
    ✅Help Support Spin The Hack to make education free of cost in every part of India. You have to just Like, Subscribe, Share this video.I Hope you enjoy/enjoyed the video.If you have any questions or suggestions feel free to ask them in the comments section or on my social networks.
    ✅ Support The Channel
    ✅ Get Our Courses(This course are available on this channel itself for free)
    1) Advance Ethical Hacking Course In Hindi
    2) N map Beginning to Advance Course
    3) Wire shark
    4) Bug Bounty Course
    5)Quick Hacking course
    6) Network Hacking
    (Increasing).....
    ✅ SOCIAL NETWORKS - Connect With Us!-------------------------------
    TELEGRAM DISCUSSION GROUP - t.me/spinthehack
    TELEGRAM OFFICIAL CHANNEL - t.me/spintheha...
    INSTAGRAM(SPINTHEHACK) - / spinthehack
    INSTAGRAM(THECYBERZEEL) - / thecyberzeel
    TWITTER - / thecyberzeel
    --------------------------------
    Thanks for watching!
    देखने के लिए धन्यवाद
    #HACKINGHINDI #CYBERSECURTIY

Комментарии • 157

  • @ahtishamp214
    @ahtishamp214 3 года назад +7

    Amazing Sir, Salute To YOur Knowledge Love You Sir From Pakistan

  • @user-fl1zw4lb6n
    @user-fl1zw4lb6n 3 года назад +15

    Bro thanks . It's helpful to teen hunters like me ❤❤

  • @satana_358
    @satana_358 3 года назад +2

    Love You Bro. Dimag ke Upar se Gaya. par 2-3 Bar Aur dekhunga to Aa Jayega. Again LOVE YOU

  • @dropdcsc
    @dropdcsc 5 месяцев назад

    bhyamkarrr .... yrr aapne too Bside GOA me diya gya knowledge se aage ka knowledge diye hoo ..
    thanks a lot sir

  • @Abhisheksingh-yo4jq
    @Abhisheksingh-yo4jq 3 года назад +1

    your channel is better than many paid courses people buying

    • @rushigadhave4223
      @rushigadhave4223 Год назад

      can you share the extension file ,if you have it

  • @AnubhavMohandas
    @AnubhavMohandas 4 года назад +7

    Main samaj gaya, and achese samjaya aapne...
    Thank You and Keep Smiling

    • @Akkirao87
      @Akkirao87 3 года назад

      Hi bro burp suite pro link he kya

    • @AanandRatnesh
      @AanandRatnesh 3 года назад

      Hi,,
      Burpsuit pro windows ...
      link milega kya bhai...

  • @sadnansakin7608
    @sadnansakin7608 3 года назад +5

    wow.. learned something new. Thanks bro

  • @shivamthakur-vh9el
    @shivamthakur-vh9el 2 года назад

    Mast samjhaya bhai..... 10/10 for ur videos ..... 🙌🙌🙌❤️

  • @hiranjanchaudhary
    @hiranjanchaudhary 3 года назад

    Thank u sir aur vi aisa hi video chaahiye me computer related student hu aapke video se bahut hame helpful hota he sir...

  • @ankitkalbande2772
    @ankitkalbande2772 3 года назад

    muzhe ata tha but apne ise aur jayada asan kr diya hai, Thanks...

  • @pratikshetty3123
    @pratikshetty3123 3 года назад +1

    The video is superb keep making bro. Its a good learning platform.

  • @devilworld1612
    @devilworld1612 3 года назад +5

    I want know can we have to take permission from web listed on hackeroone by mail them or any other option or we can do xss attack Directly

  • @AyushKumar-hv2ww
    @AyushKumar-hv2ww 3 года назад

    Thnku so much bro. You are a very good advantage for those who are new to cyber security.

  • @RohitYadav-kt8km
    @RohitYadav-kt8km 4 года назад +4

    Ha bro I understand thanks

  • @SumitSingh-xu4qs
    @SumitSingh-xu4qs 3 года назад +1

    bhai esme mja aa gya very helpfully

  • @xazz7775
    @xazz7775 3 года назад +5

    I used sentinel on a website and I got the message saying that "found special chars in respnse which allow to break out from the tag" . Now I ain't understanding which is that char and how to build a payload to exploit xss. Will you please guide me in the same

    • @theintrovert894
      @theintrovert894 3 года назад

      Can you plzz teach me all u know plzz😢

    • @sarfraz4274
      @sarfraz4274 2 года назад

      how to download sentinel...plzz reply

    • @acybermantic1226
      @acybermantic1226 2 года назад

      @@sarfraz4274 it is easy. You should have burp suite professional version and in its extender configure jython file and then you'll see it's install option

    • @sarfraz4274
      @sarfraz4274 2 года назад

      I have allready installed but I don't know how to use...I finded about sentinel video but I don't got :(

  • @akshatabhandari7149
    @akshatabhandari7149 2 года назад +1

    Main Samaj Gayi😇👌

  • @romanhossen6392
    @romanhossen6392 3 года назад

    Love from Bangladesh 😍😘

  • @AslamKhan-tv2ct
    @AslamKhan-tv2ct 2 года назад

    just keep going bro. One day u vl have millions of users.

  • @ImranShaikh-kt7ey
    @ImranShaikh-kt7ey 4 года назад +1

    I m here 😎

  • @harshkumar-to4nu
    @harshkumar-to4nu Год назад

    maja aa gaya sir

  • @sudaychalke1014
    @sudaychalke1014 4 года назад

    bro that was very nice video waiting for another one

  • @acybermantic1226
    @acybermantic1226 2 года назад

    I understood the whole concept.

  • @VishalBhagat1
    @VishalBhagat1 3 года назад +2

    I'm also a teen hunter!!!

  • @Mrjtk
    @Mrjtk 2 года назад +1

    ">

  • @Free.Education786
    @Free.Education786 2 года назад +6

    Can we upload SHELL via XSS ? Or similar vulnerabilities exploitation methods like LFI, RFI, RCE to "upload SHELL" in web server directory to gain root access ? 🤔 . If yes, then please do educate us because I submitted many XSS popup vulnerability reports to HackerOne BugCrowd Integrity but all were rejected due to missing SERIOUS IMPACT. Hope to hear from you soon. Thanks 🤝 ❤💚💙✌💯👍

    • @nikunjchandak6628
      @nikunjchandak6628 Год назад +1

      Try to retrieve cookies from it and then submit it. Hopefully, they will consider it.

    • @ilixymx
      @ilixymx Год назад

      yeah sure u can

    • @gauravpawar5604
      @gauravpawar5604 11 месяцев назад

      No , It is not possible to upload webshell through xss because it is effects on client side.

    • @Free.Education786
      @Free.Education786 11 месяцев назад

      @gauravpawar5604 Yes. We can escalate self reflected XSS to RCE to connect two systems to run remote commands. I learned this technique from a practical bug hunting channel on RUclips. Thanks ✅️

  • @AnimToonDK-uv2hn
    @AnimToonDK-uv2hn 26 дней назад

    great bro

  • @circastic2860
    @circastic2860 3 года назад

    Best is always the best.

  • @avinashkaushik1298
    @avinashkaushik1298 Год назад

    kam samjha lekin acha samjha

  • @dark_legions2227
    @dark_legions2227 2 года назад

    Awsm bhai...

  • @omlakade3953
    @omlakade3953 4 года назад +3

    First like ❤️
    First view
    First comment

  • @muhammadawais5377
    @muhammadawais5377 2 года назад

    very informative

  • @sifatmobile6798
    @sifatmobile6798 2 года назад

    Good knowledge bro

  • @KrishanKumar-lr4wb
    @KrishanKumar-lr4wb 3 года назад

    Nice work 🤟

  • @souravmondal-vn4in
    @souravmondal-vn4in 3 года назад

    Good agli video

  • @animetapee
    @animetapee 3 года назад +2

    burpsuite pro link pls

  • @sumitbagdi1669
    @sumitbagdi1669 3 года назад

    Thanks bro help full video

  • @rohitchavan9810
    @rohitchavan9810 3 года назад

    thank s Bhai Abhi Mai penestration testing pad Raha hu Bhai kuch idea do our uske uper ka agla video banav bhai

  • @yurisagar823
    @yurisagar823 3 года назад

    Superb ❤💖💖💖💖💖💖👍👍👍

  • @krishnabanik9578
    @krishnabanik9578 3 года назад

    Great bro

  • @anjusaraswat9584
    @anjusaraswat9584 3 года назад

    Sir agar wo code website par laga hai TB to har ek visitor ko target karega aur agar code keval web page par hai to particular one ko target karega

  • @HinaAhmad950
    @HinaAhmad950 3 года назад

    Hello I under stand this all. U r the best of
    All thanks alot plz send me link of ur next video thanks alot

  • @apoorvtripathi8587
    @apoorvtripathi8587 3 года назад

    main samajh gaya dude

  • @hackwithjack4816
    @hackwithjack4816 2 года назад

    Samajh me aaya bhai

  • @arfitutorials3708
    @arfitutorials3708 Год назад

    Thnak you so much!!

  • @rajibkabilakisor
    @rajibkabilakisor 3 года назад

    Thanks Brother 😁

  • @skselim8536
    @skselim8536 2 года назад

    Thanks buddy ❤

  • @eklavya2582
    @eklavya2582 3 года назад

    Bhai sahi hai

  • @IVMysterydunia2023
    @IVMysterydunia2023 8 месяцев назад

    Bro, your video is excellent . I learnt from it. but pls send the download link which is not existed now. Thanks

  • @RithikTechui
    @RithikTechui 2 года назад

    good

  • @itskishorstatus962
    @itskishorstatus962 2 года назад

    Thanks

  • @ujwal9839
    @ujwal9839 3 года назад +1

    Sir mujhi ek chij sikhana hai aaj log price kaam hai phir price ko jada kar ke oder karte hai aise kaise sir karte hai jo ki impossible hai sir price ko high karna sir e commerce aise khuch bato sir price rilated dekhna hai mujhi sir log karte hai ya sab 🙏

    • @theintrovert894
      @theintrovert894 3 года назад

      Bro its cyber security channel....not commerce

  • @muhammadilyastechnical982
    @muhammadilyastechnical982 3 года назад

    mujy samaj agaya bahi

  • @khileshprajapati7269
    @khileshprajapati7269 Год назад

    Thank you bhai

  • @sidhant3399
    @sidhant3399 3 года назад

    sunita bhabhi op

  • @viveksahu8380
    @viveksahu8380 2 года назад

    Mai smjh gaya

  • @prajwaladhikari3982
    @prajwaladhikari3982 Год назад +1

    anuvab i need link of burpsuite

  • @rajopofficial2651
    @rajopofficial2651 2 года назад

    Sunita bhavi 😂😂

  • @alleditzs10
    @alleditzs10 8 месяцев назад

    Sir from where I get the burpsuite pro version?

  • @failhuman5944
    @failhuman5944 3 года назад

    lovo u from bangladesh

  • @user-ws5yy9qi5l
    @user-ws5yy9qi5l 11 месяцев назад

    sir bug bounti karne se pahle comapany se permissio lena padta hai ya fir agar lena padta hai to kaise le permission please bata dijiyega sir ji

    • @Safvanviber-xm3pn
      @Safvanviber-xm3pn 10 месяцев назад

      Bai hamne hackerone ka tharah site use karooga

  • @bhagyashree8822
    @bhagyashree8822 3 года назад

    Nice

  • @RanjeetKumar-zj4xc
    @RanjeetKumar-zj4xc 2 года назад

    Thanks❤️

  • @ranjetsingh6869
    @ranjetsingh6869 3 года назад

    Intruder ke thought xss attack kiya website ne block kar diya or wo bug baunty program main listed thi.......ab kya karu

  • @viralhitshindi6033
    @viralhitshindi6033 Год назад

    Bhai Google Chrome ki extension bana kr uski help se cookies kaise mil skti h

  • @SumitSingh-xu4qs
    @SumitSingh-xu4qs 3 года назад

    thanks you bro

  • @RashtrwadiHarshitSanatani
    @RashtrwadiHarshitSanatani 3 года назад

    Thanks❤🌹

  • @user-fk8qe4oz3o
    @user-fk8qe4oz3o 4 года назад +1

    Superb 😉

  • @aneessk7824
    @aneessk7824 3 года назад +1

    Burpsuite installation wali video ka link do na bhai.. ya fir anubhav bhai ki id dedo

  • @ankitahir291
    @ankitahir291 Год назад

    Hi, how to prevent xss on joomla CMS... In lang parameter can you share any solution?

  • @kanhaiya4960
    @kanhaiya4960 3 года назад

    👍

  • @Herculez_
    @Herculez_ 11 месяцев назад

    that g drive link is not working

  • @memorysmelody4589
    @memorysmelody4589 Месяц назад

    Kindly provide the burp pro. The link provided is expired

  • @anuproy9289
    @anuproy9289 Год назад

    Hi.. I'm unable to see your update notification in telegram.. please guide me

  • @sidabid5033
    @sidabid5033 3 года назад

    Agar kisi site pura pura script reflect karne lage to iska kya matlab hai??

  • @user-ix5jc4en3z
    @user-ix5jc4en3z 7 месяцев назад

    Bro sentinel google drive link in description is not working bro

  • @anayetali4192
    @anayetali4192 11 месяцев назад

    I need burpsuit professional version. where can i get it?

  • @darkside8211
    @darkside8211 2 года назад

    Bro,is video me jo software installed karne ka bola he 5 mb ka,aapne jo lonk di he usme voh expire ho chuka he

  • @thenewindia1701
    @thenewindia1701 2 года назад

    bhai aap carryminati ka channel dekhte ho na sach batana 😂😂😂😂

  • @zagivirus1333
    @zagivirus1333 Год назад

    brother can you provide pro-burpsuit please..i am waiting for the reply

  • @anjusaraswat9584
    @anjusaraswat9584 3 года назад

    Sir code kaha inject krte hai Clint side se ya server side se

  • @muhammadhassan2259
    @muhammadhassan2259 2 года назад

    anyone know ka jo telegram par burp suite pro ka zip folder ka password kia hai??
    jiss ka yeh bta rahy

  • @gobtech1053
    @gobtech1053 6 месяцев назад

    Thank you sir.... Sir! me apke telegram se burp pro ka file download kiya hu..but usko unzip karneme password lagtahe...Please give this password....

  • @ananthuj1117
    @ananthuj1117 3 года назад

    Bro what about post parameter website was of get param so how to exploit a web of post

  • @umeshhembram_1587
    @umeshhembram_1587 Год назад

    sir drive file is not exist do something

  • @AbhishekSingh-uw6cq
    @AbhishekSingh-uw6cq Год назад

    Brother the link which you have provided is expired

  • @jayeshbora2930
    @jayeshbora2930 3 года назад

    Mera burp suite latest hey par nhi aaraha hey

  • @khai-vq5hn
    @khai-vq5hn 8 месяцев назад

    its no more xss vulnerable

  • @viteshwalunj5458
    @viteshwalunj5458 2 года назад

    Brother please provide link to download file for extension above link is not working

  • @priyeshpatil5445
    @priyeshpatil5445 2 года назад

    discription source file link not working

  • @tech.talkwithronit4253
    @tech.talkwithronit4253 2 года назад

    sir burp suite professional

  • @milanjain652
    @milanjain652 2 года назад

    File link not working plzz provide me

  • @bajrangdavda1541
    @bajrangdavda1541 Год назад

    senitel link is expired

  • @shahzicricket
    @shahzicricket Год назад

    Kam se kam is ma kitni bounty limit ha

  • @yashofficial1305
    @yashofficial1305 3 года назад

    bhai file download hi nahi ho rhi hai ..what to do

  • @tech.talkwithronit4253
    @tech.talkwithronit4253 2 года назад

    kaha se le??

  • @theh1ckerexploiter476
    @theh1ckerexploiter476 2 года назад

    brother brupe suite ka professional version kase download kore

  • @codewithyuvi24
    @codewithyuvi24 5 месяцев назад

    SIr ji burp suite pro chahiya ha pls provide me

  • @krutagnpatel8370
    @krutagnpatel8370 Год назад

    AnubhavBHAI vo link share kar sakte ho Burpsuite Pro ki?

  • @ravikant1887
    @ravikant1887 Год назад

    can you send me the link of burp suite pro??