Live Bug Bounty Hunting | Authenticated Testing the Client-Side & Server-Side on Figma's Core App

Поделиться
HTML-код
  • Опубликовано: 11 сен 2024
  • We spend 3 hours looking for attack vectors in Figma's UX/UI collaboration app, as well as discussing what types of Server-Side Injections & Client-Side Exploits are possible based on the technology stack!
    Discord - / discord
    Hire Me! - ars0nsecurity.com
    Watch Live! - / rs0n_live
    Free Tools! - github.com/R-s0n
    Connect! - / harrison-richardson-ci...

Комментарии • 19

  • @gyro891
    @gyro891 7 месяцев назад +5

    Waking up to see a new video from you just made this a great Sunday! Thanks for all you do. 🔥

  • @Cossaw
    @Cossaw 7 месяцев назад +9

    if u use ctrl + space to send a request in burp instead of having to mouse click each time u can save a lot of time and energy over time. at least i prefer it :)

    • @rs0n_live
      @rs0n_live  7 месяцев назад +2

      Oooh, I didn't know that hotkey existed, thank you!! Great tip!

    • @cymzfr
      @cymzfr 7 месяцев назад

      Thank you bro ❤❤

  • @waterlord6969
    @waterlord6969 7 месяцев назад

    Love seeing your logic while testing targets! ❤

  • @michalisz.4268
    @michalisz.4268 7 месяцев назад

    Awesome videos dude, thank u for uploading this live!
    Also, you have an OCD to catch burps automatic backup and press the hide before the window close. All the hackers/programmers/IT etc have 😂

  • @KipcraftGaming
    @KipcraftGaming 7 месяцев назад

    I’m so happy you post your live’s. I’m on europe time so most of the times its hard for me to join.

  • @user-nm4og5yi4e
    @user-nm4og5yi4e 7 месяцев назад

    Happy to see u again sir🥰........Love from Nepal

  • @monikasharma2931
    @monikasharma2931 7 месяцев назад

    Your video gives me motivation 😊❤

  • @FutureProsperityio
    @FutureProsperityio 7 месяцев назад

    Keep it up rs0n,💎 great content.

  • @omarahmad8710
    @omarahmad8710 7 месяцев назад

    Love your content!!!!!!❤

  • @gamerz9129
    @gamerz9129 7 месяцев назад

    if there is a CNAME should i avoid client site injection and authanticaton etc? so i just test for cve?

  • @ReligionAndMaterialismDebunked
    @ReligionAndMaterialismDebunked 7 месяцев назад

    Nice sound and doggy. Hehe

  • @SecurityTalent
    @SecurityTalent 7 месяцев назад

    ❤❤

  • @Dayanandhansubramani-rj6tc
    @Dayanandhansubramani-rj6tc 7 месяцев назад

    uhhhhh is this yesterday twitch stream ??

    • @rs0n_live
      @rs0n_live  7 месяцев назад

      Yep! I always upload them to YT the next morning.

    • @lolwthy
      @lolwthy 7 месяцев назад

      ​@@rs0n_live❤