Finding Your Next Bug: GraphQL

Поделиться
HTML-код
  • Опубликовано: 21 авг 2024

Комментарии • 45

  • @lifeofsq5653
    @lifeofsq5653 10 месяцев назад +1

    Thanks for sharing your knowledge about GraphQL. Its really helpful for beginners in graphl vulns scanning

  • @JL-ud6xx
    @JL-ud6xx 2 года назад +1

    Thank you for clearing my concept. Will listen to your practical video of it. Will help me in my work!!!!

  • @fredomana7183
    @fredomana7183 3 года назад +1

    You’re the best. Keep doing what you’re doing. Much love from San Diego

  • @mehulverma9496
    @mehulverma9496 Год назад +1

    Hey~~ I got Information disclosure and got 6 redbull trays thank you!!

  • @kabirsuda
    @kabirsuda 3 года назад +1

    Perfect explanation!👏🏻This video cleared my brain about graphQL...
    Thanks Katie 🔥

  • @faique2995
    @faique2995 3 года назад +1

    Best teacher to learn web application hacking

    • @InsiderPhD
      @InsiderPhD  3 года назад +1

      😁😁😁😁 I appreciate it!

  • @isiraadithya
    @isiraadithya 3 года назад +2

    She is back!!!!

  • @luckythandel
    @luckythandel 3 года назад

    Perfect explanation, keep making such videos plz. we all support you, katie.

  • @homeofcreation
    @homeofcreation 2 года назад

    As a Soap developer, having WS-Security this give me the creeps. As a bounty hunter this brings me joy!

  • @mohammedsabbirahmed3015
    @mohammedsabbirahmed3015 3 года назад +2

    Hey katie. Awesome methodology and video as always but I think it would be wonderful if you could a takeaways slide at the end of the presentation . I think it would help greatly in effective note taking . Because whenever i watch your video i try to take notes and understand some things from it but it is not always possible to grasp every tips and tricks you provide in just one watch. So then i do some more research on the topic and relate that to my notetaking and still there remain certain things that im not able to properly grasp so i have to watch the whole video all over again to find that point where you were describing the desired topic and try to understand it more. And so until im able to fully understand all the note taking ive done it takes me to watch your videos like 4/5 times . So i think it would be really great if you could do just one more slide on the takeaways and it would really mitigate this problem i have and also help me to be efficient in taking notes . Thank you 😊

    • @InsiderPhD
      @InsiderPhD  3 года назад

      Thank you for the feedback I will take it onboard and do a summary at the end :)

    • @mohammedsabbirahmed3015
      @mohammedsabbirahmed3015 3 года назад

      @@InsiderPhD you are most welcome katie 🥰❤️❤️

    • @kira_io
      @kira_io 3 года назад

      Why am i jealous of a youtube video wtf.
      I hope i meet someone who pays as much attention to me as you do to graphql lectures.

    • @mohammedsabbirahmed3015
      @mohammedsabbirahmed3015 3 года назад

      @@kira_io #katiehax 🙃

    • @kira_io
      @kira_io 3 года назад

      @@mohammedsabbirahmed3015 😳

  • @1990shahid
    @1990shahid 3 года назад +1

    amazing lecture!! - thank you for creating this. I'm new to this bug hunting so doing the hacker101 challenges and stuck on this graphQL nonsense :)

  • @hirthicshyam9290
    @hirthicshyam9290 3 года назад +4

    Do live bug Hunting

  • @dibyanshusah117
    @dibyanshusah117 3 года назад +1

    Love.. Your.. Content.. Thank you.. ❤❤👍👍☺

  • @Nop1337
    @Nop1337 3 года назад

    thank you so much!

  • @sexayboiee
    @sexayboiee 3 года назад +5

    dude its like ads every 3 minutes, great content though.

    • @InsiderPhD
      @InsiderPhD  3 года назад +7

      I’m so sorry it’s RUclips adding them in automatically I’ve turned them off now and hopefully for all future videos!

  • @shrirangkahale
    @shrirangkahale 3 года назад

    Rewatching this video now.. apparently I forgot nearly everything :P

  • @Mono_Lithic_Gamingg
    @Mono_Lithic_Gamingg 3 года назад

    Hey, I'd like to ask here since I'm a newbie to bug bounties.. What does it mean when a company states, that SCANNERS ARE NOT ALLOWED? Does it mean I can't use stuff like nmap, sqlmap, xsstriker etc? So I basically have to find all the bugs manually?
    Thanks in advance

    • @InsiderPhD
      @InsiderPhD  3 года назад +1

      It means you can’t run a bunch of automated scanners, nmap would probably be disallowed but sqlmap and XSStrike (assuming you were running it on one endpoint) would be. They just don’t want a bunch of requests that clog up a service for legitimate users. Or they want real security issues rather than best practice which scanner often find.

  • @abhhibirdawade9657
    @abhhibirdawade9657 3 года назад +1

    Hey Katie

  • @UsamaAli-kr2cw
    @UsamaAli-kr2cw 2 года назад

    Your content is amazing but please try to make small videos in a playlist manner.

  • @NotToBeTooTakenSeriously
    @NotToBeTooTakenSeriously 5 месяцев назад

    how do i get the introspection?

    • @InsiderPhD
      @InsiderPhD  5 месяцев назад

      Find a graphic endpoint and use the introspection query

  • @ca7986
    @ca7986 3 года назад

    ❤️

  • @rubena1720
    @rubena1720 3 года назад

    your videos are nice, can you please teach everyone about subdomain takeover?
    -thanks

  • @jaeger809
    @jaeger809 3 года назад

    Hey i tried to find bugs many time.
    I can't even find a single bug. 😭

    • @jaeger809
      @jaeger809 3 года назад

      @ahmad.mansour Mansour NO.

  • @mymothermom4858
    @mymothermom4858 3 года назад

    Hi kitty i really need your help where can i contact you i just need 5min please

    • @InsiderPhD
      @InsiderPhD  3 года назад

      Discord! I’m pretty active and if I’m not around someone else will try to help you

    • @mymothermom4858
      @mymothermom4858 3 года назад

      @@InsiderPhD give me the link please

  • @CanaaniteRanger
    @CanaaniteRanger Год назад

    Is this information still valid nowadays?!! (It is two years since this video was posted) ... and does those vulnerabilities still exists in the wild?! ... thank you

    • @InsiderPhD
      @InsiderPhD  Год назад +1

      Yup, actually even more common now as more companies have adopted this technology!

    • @CanaaniteRanger
      @CanaaniteRanger Год назад

      @@InsiderPhD Thank you for answering ... and I would like to say "You are an awesome person" :-)

  • @malikimranawan3762
    @malikimranawan3762 3 года назад

    Hello mam

  • @FrenchPirate83
    @FrenchPirate83 3 года назад

    Nice video, but loud ads every 2 minutes... less happy about that.

    • @InsiderPhD
      @InsiderPhD  3 года назад +2

      Ugh, sorry, I must have forgotten to turn them off, they are so annoying, youtube puts them on by default and they play ALL the time, despite me turning off midrolls

  • @rajkumar-vl7il
    @rajkumar-vl7il 3 года назад

    Hey Katie I loss my laptop (stolen) I may miss your lessons but I was hoping I get one soon
    ....

    • @InsiderPhD
      @InsiderPhD  3 года назад +1

      Aww I’m sorry to hear that I know it sucks to lose your computer. I saved up for months to get my laptop and I can say I’d be absolutely devastated if it was stolen. Don’t worry too much about missing my content, it’ll all be here!

    • @rajkumar-vl7il
      @rajkumar-vl7il 3 года назад

      @@InsiderPhD Yes Dear my Valuable data is Lost ,😔 Hope 2021 gives something .....