Hackers can change your passwords with this exploit..

Поделиться
HTML-код
  • Опубликовано: 14 авг 2023
  • Checkout AppMySite and convert your website to native mobile app in minutes!: www.appmysite.com/?ref=intern...
    In this video, I demonstrate Host Header Injection and how hackers exploit this vulnerability to reset passwords of users on a website.
    DISCLAIMER: This video is intended only for educational purposes. The concepts showcased in this video are completely from a penetration testing perspective. I do not promote or encourage any illegal hacking activities.
    Host header injection vulnerability exists when a website takes the Host value from the request header and processes it in an operation like construction the password reset URL for a user. When this happens, the request is directed to the attacker's server instead of the actual web server of the website.
    In this video, I showcased this vulnerability on a retired HackTheBox machine called Forgot.
    Check out this machine here: www.hackthebox.com/machines/f...
    Thanks for watching!
    SUBSCRIBE for more videos!
    Join my Discord: / discord
    Follow me on Instagram: / teja.techraj
    Website: techraj156.com​​​​​
    Blog: blog.techraj156.com
  • НаукаНаука

Комментарии • 53

  • @prashantsingh6606
    @prashantsingh6606 10 месяцев назад +22

    Bro I really like your content, your content is very very good not like other trash channel, I suggest you to create a parallel channel where you can upload small reel on your content , probably in a year you will be famous among developer

  • @akashbhagwat3696
    @akashbhagwat3696 10 месяцев назад +2

    Totally Dope Content in this channel. Recommended to all my friends. Great work. Keep going brother will support you !

  • @TechnicalHeavenSM
    @TechnicalHeavenSM 10 месяцев назад +2

    Such a nicely and neatly explained video❤❤❤

  • @getreadytotube
    @getreadytotube 9 месяцев назад +4

    Thanks! Wow!

  • @hackerzone3292
    @hackerzone3292 10 месяцев назад

    bro that was awesome.. I learnt this today after so long days.. please make such videos on bug bounty please

  • @ItsDoros
    @ItsDoros 10 месяцев назад +1

    Everything clearly explained❤

  • @dotak9663
    @dotak9663 10 месяцев назад

    hey teja from where i should start learning hacking any roadmap, you suggest to beginners

  • @PROFES50R
    @PROFES50R 9 месяцев назад

    Hey tech raj I recently watched your video relate to discord hack. I want to ask something if a hacker grabs your token can he get hack my other ids too or get my ip?

  • @santaclaws1508
    @santaclaws1508 10 месяцев назад +1

    very situational but interesting learn either way

  • @SteveBClark
    @SteveBClark 10 месяцев назад +2

    Why you won't make a cybersecurity course

  • @1.1kSubChallengeWithoutAnyVid
    @1.1kSubChallengeWithoutAnyVid 10 месяцев назад

    So in summary, we just put our ip address then wait for the reset token. Our priority is reset token.

  • @jesusdacoast872
    @jesusdacoast872 10 месяцев назад

    Thank you so much

  • @hackersandy7712
    @hackersandy7712 10 месяцев назад +2

    Commenting just to boost the algorithm

  • @TechnoEveryday
    @TechnoEveryday 8 месяцев назад

    4:40 does gmail scans the URL on our Android phones?

  • @manjula_1
    @manjula_1 10 месяцев назад

    I know this before, and i tried modifying host!, now i am using env for host

  • @Doxmilitary1
    @Doxmilitary1 9 месяцев назад +1

    Needs help how can l hack an aviator predictor game on sports bet please

  • @MohsinIftikhar-1
    @MohsinIftikhar-1 9 месяцев назад

    Many people are connected to my wifi but i can't see their mobile name only mac address and ip address i can see ...can u tell me solution how can i see their mobile name

  • @_AayushKumar
    @_AayushKumar 10 месяцев назад +1

    What is this vulnerability known as ?
    By the way very much informative videos and great presentation got to learn so much new things.👍❤

    • @SPOJerry
      @SPOJerry 10 месяцев назад

      host header injection vulnerability i believe

  • @cyberdudegaming
    @cyberdudegaming 9 месяцев назад

    I have one old frnd his name is raja.. n3t attacker like this.. before 10years .. is it you ?

  • @aminsec
    @aminsec 9 месяцев назад

    damn bro this thing is scary

  • @kurulusosman19024
    @kurulusosman19024 10 месяцев назад

    How to visit the website.

  • @sanjaytheboss9938
    @sanjaytheboss9938 9 месяцев назад

    Broo someone Miss use my photos please help me to delete that photos please reply fast

  • @dineshdevanaboina9443
    @dineshdevanaboina9443 10 месяцев назад

    Big fan

  • @athul2532
    @athul2532 10 месяцев назад

    How to find these vulnerability in real websites

  • @samuel_craft57
    @samuel_craft57 10 месяцев назад

    Does that work with Microsoft accounts too?
    Mine got hacked and the guy chaged my E-Mail

    • @samuel_craft57
      @samuel_craft57 10 месяцев назад

      Well see about that lmao@@DDD9216A

  • @bhaikicoding1989
    @bhaikicoding1989 10 месяцев назад +1

    plz tell me where i can learn linux that can help in cyber security?

  • @TheAKAnonymous
    @TheAKAnonymous 10 месяцев назад +1

    nice👍👍🤟

  • @thilakreddy1904
    @thilakreddy1904 10 месяцев назад

    🔥

  • @M.V.A.SHORTS
    @M.V.A.SHORTS 6 месяцев назад

    Sir how to terminal htb forgot kashi kare

  • @user-lv7bz4nz1h
    @user-lv7bz4nz1h 10 месяцев назад

    How to visit website

  • @coolu
    @coolu 10 месяцев назад +1

    does this mean i can get back my old xbox account and finally retrieve the memories that i thought were lost forever?

    • @coolu
      @coolu 10 месяцев назад

      nevermind i just realized that this is about hacking websites or smth lol

    • @rajaconstantine
      @rajaconstantine 10 месяцев назад +1

      Yes
      No
      Ok bye

    • @coolu
      @coolu 10 месяцев назад

      brh i know i cant @@rajaconstantine

  • @stevdodd7515
    @stevdodd7515 10 месяцев назад

    😮

  • @45.editss
    @45.editss 10 месяцев назад

    bro y r u not replying

  • @technicalcreator3618
    @technicalcreator3618 10 месяцев назад

    Op

  • @News_0302
    @News_0302 9 месяцев назад

    Any one help me i have infinx phone hot8i i deleted my sms by mistake recovery possible please tell me

    • @user-dc7cr3lj9h
      @user-dc7cr3lj9h 9 месяцев назад

      Deangelocrack.

    • @user-dc7cr3lj9h
      @user-dc7cr3lj9h 9 месяцев назад

      She can help you

    • @News_0302
      @News_0302 7 месяцев назад

      @Smithgeaoge yes i need help

    • @News_0302
      @News_0302 7 месяцев назад

      @Smithgeaoge ok tell me how is this possible

  • @razalkp
    @razalkp 10 месяцев назад

    Hi

  • @user-cj7ie1lr9g
    @user-cj7ie1lr9g 9 месяцев назад

    What you do for living bro

  • @murisamajaliwa3405
    @murisamajaliwa3405 Месяц назад

    Your contents are not beginner friendly for real

  • @quickkcare605
    @quickkcare605 10 месяцев назад

    Many you really are shadow banned