BYPASSING SAML AUTHENTICATION FOR BEGINNERS!

Поделиться
HTML-код
  • Опубликовано: 7 янв 2025

Комментарии • 115

  • @cyber_boi_
    @cyber_boi_ 4 года назад +12

    00:50 What is SAML
    01:22 Flow of SAML
    01:51 SAML Response
    02:30 Signature in SAML
    02:57 Bugs
    03:16 Signature Not Checked
    04:28 Signature only Checked When Exists
    06:32 Comment Injection
    07:49 SAML Reply & XXE
    😊

  • @winklerrr
    @winklerrr 2 года назад +1

    Thanks for the video! I really like the speed of it - no unnecessary content, straight to the point. 👍

  • @curtishoughton9347
    @curtishoughton9347 8 месяцев назад

    Amazing content really impressed! Concise and straight to the point. Keep it up!

  • @DontFookGaming
    @DontFookGaming 10 месяцев назад +1

    I think there is one error in this video, she said Google return back SAML response to youtube but graph showed, it returned to User. ? 1:44

  • @CyberBlackHole
    @CyberBlackHole 4 года назад +8

    Nice explanation. Keep posting

  • @alissonbezerra7
    @alissonbezerra7 2 года назад +1

    Excellent video! Thank you.

  • @techguru5230
    @techguru5230 4 года назад

    Great... very well explained.. looking for more videos.. thanks for your contribution ❤️

  • @broken.insider
    @broken.insider 2 года назад

    Fallen love with you farah😍😍

  • @pranaykumar6291
    @pranaykumar6291 4 года назад

    Good Explanation..!! Keep Going Farah..

  • @rohankumar6962
    @rohankumar6962 4 года назад

    Great explanation. Keep posting videos like this and contributing to community.

  • @afifmalghani755
    @afifmalghani755 4 года назад +1

    So, you have to know one username password pair for these attacks to work? The first 2 attacks.

  • @nightwatch4705
    @nightwatch4705 4 года назад +1

    Great explanation. Keep posting. Could you also make a video about making our own vulnerable labs? It will be helpful. Thank you.

  • @ashokreddyz
    @ashokreddyz 4 года назад

    Good explanation can share us what website you took as an example and we'll practice

  • @farfaraway2006
    @farfaraway2006 4 года назад

    Thanks Farah! very informative and straight forward :)

  • @pawanchandna3038
    @pawanchandna3038 4 года назад

    Way of explaining is really good...

  • @chandan1980-s8z
    @chandan1980-s8z 4 года назад

    Please make a video on AWS Pentesting

  • @anabakhtar3774
    @anabakhtar3774 4 года назад

    Another informative video, great content Farah

  • @debprasadbanerjee5005
    @debprasadbanerjee5005 3 года назад

    Could you bring forward some more labs with SAML?

  • @rinkirtkumari5830
    @rinkirtkumari5830 3 года назад

    Mam what happened if we change host header and given header pass in Realystate

  • @medioclick
    @medioclick 4 года назад

    Super good and simple explained. Keep posting

  • @testhacks2757
    @testhacks2757 2 года назад

    Thanks for the great content, where do i get the lab?, Thanks in advance.

  • @sanukyadav
    @sanukyadav 4 года назад

    Thanks for this video Farah👍🏻 Subscribed

  • @srilatha8103
    @srilatha8103 Год назад

    Can someone share the SAML labs which was mentioned in this Video ? Thankyou

  • @aviralgupta9869
    @aviralgupta9869 4 года назад +2

    Thanks for pentest lab giveaway it will help me learn more 😊

  • @oo7posam581
    @oo7posam581 4 года назад

    Nice but.... Can you teach RCE attack with Practical... Rather than Bwapp or other such practice websites.

  • @roger5968
    @roger5968 4 года назад

    please make video on Buffer Over Flow in detail and lab also.

  • @SageTheProfessor
    @SageTheProfessor 4 года назад

    Thank you for dropping the knowledge Farah. -Sage

  • @neerajk_10
    @neerajk_10 2 года назад

    excellent. Quick and precise.

  • @jaydipjani2911
    @jaydipjani2911 3 года назад

    Hello mam we can used saml for one login in php web appplication ?

  • @sarikamehetre5367
    @sarikamehetre5367 4 года назад +1

    'll you recommend Apple MacBook air or pro for hacking and coding on virtual box or a Dell laptop

    • @FarahHawa
      @FarahHawa  4 года назад +1

      Rajshree VLOGS if I had the budget, I’d go for MacBook Pro

  • @Test-ed8cm
    @Test-ed8cm 4 года назад +1

    yo, are you still gonna upload videos in the future?

    • @FarahHawa
      @FarahHawa  4 года назад

      Roldanbrandon.saytek Definitely!!!

    • @Test-ed8cm
      @Test-ed8cm 4 года назад

      @@FarahHawa Nice. Glad to hear that

  • @aryan-gupta
    @aryan-gupta 4 года назад

    Is it necessary to learn various web technologies like mern or asp.net to find bugs in a web application ?? I have a beginner knowledge in html, css , javascript ,php , and sql

  • @mylyf6684
    @mylyf6684 4 года назад

    Good work.
    Which lab are you using ?

  • @suryarathore1059
    @suryarathore1059 4 года назад

    How to setup this lab for practice, kindly please show the lab setup also next time

  • @dilaxdilaxsan4314
    @dilaxdilaxsan4314 4 года назад

    Thank you so much very good explanation

  • @thelolladorfking2416
    @thelolladorfking2416 4 года назад

    As always great content. I'll watch your GraphQL video, it is nice

  • @dhruvilpatel1201
    @dhruvilpatel1201 4 года назад +1

    It's Royal Infosec ✌️. #Royal Background

  • @waqashussain7770
    @waqashussain7770 4 года назад

    make some video to start on hacker1 or synack with live hunt

  • @faique2995
    @faique2995 4 года назад

    Great, please make a series on web app penetration testing.

  • @aishwaryabhagat9104
    @aishwaryabhagat9104 4 года назад

    How can I access the Lab?

  • @currentaffairsdaily4011
    @currentaffairsdaily4011 4 года назад

    hi Farah iam a network engineer want switch my career path to infosec where should i start i dnt have knowledge in coding where should i start

  • @codetech1803
    @codetech1803 4 года назад

    Hey how many bounties you have ever got ? Just asking

  • @vivekmaurya2274
    @vivekmaurya2274 Год назад

    Mam where u get this sso lab

  • @rainshen6628
    @rainshen6628 4 года назад

    Hello, I am an Arab. I like your video very much. I hope you can add subtitles next time

  • @hassan12141
    @hassan12141 4 года назад

    Mash Allah nice and great way to explain

  • @dhirendrapratap7796
    @dhirendrapratap7796 3 года назад +1

    Thank you so much mam

  • @WheYPrOTeiNProductions
    @WheYPrOTeiNProductions 4 года назад

    Very good explanation and great content
    You are really amazing... ;)

  • @M10GAMING-j8y
    @M10GAMING-j8y 4 года назад

    great work @farah_hawa

  • @anasshah5147
    @anasshah5147 3 года назад

    can i get this lab, give me link

  • @aneeshnadh5377
    @aneeshnadh5377 4 года назад

    Is the sig value necessary?

  • @uppypasha4908
    @uppypasha4908 4 года назад +1

    Like your vedios .. But I would love if you also focus On system hacking and Android Security and Network attacks too. Because all of it is what is in demand in CyberSec right now.. App exploitation and Server Hacking too...
    Website hacking is really asaan Sister...

  • @OfficialAkshayPote
    @OfficialAkshayPote 4 года назад

    thank you so much Farah for great explanations. I watch every video of yours. ♥
    Keep updating and keep posting great content.

  • @karuppasamykaruppasamy4686
    @karuppasamykaruppasamy4686 4 года назад

    Are you use hackthebox lap

  • @jayeshprajapati1396
    @jayeshprajapati1396 4 года назад

    Since how many years you are in this field?

  • @gyansoni2667
    @gyansoni2667 4 года назад

    Why do you not accept linkedin request ?

  • @ompatel2786
    @ompatel2786 4 года назад +1

    Hey From Where should I start if I'm Totally Beginner. I'm in 2nd year of clg.

    • @harshitkalra6822
      @harshitkalra6822 4 года назад +1

      Bhai bugbounty ke liye nahamsec ki videos dekh aur GitHub par nahamsec ki repository bhi hai for beginners

    • @ompatel2786
      @ompatel2786 4 года назад

      @@harshitkalra6822 okay Bro👍🏻👍🏻

  • @hassan12141
    @hassan12141 4 года назад

    Which brup extension u use to check assertion and signature value?

  • @gyansoni2667
    @gyansoni2667 4 года назад

    Nice explanation 👍

  • @NinjaTech1337
    @NinjaTech1337 4 года назад +1

    Best explanation With Lab. 🤗

  • @neetech3716
    @neetech3716 4 года назад

    Nice explanation.

  • @shibasheeshdey7101
    @shibasheeshdey7101 3 года назад

    teaching or reading like a news reader ? :)

  • @jayeshprajapati1396
    @jayeshprajapati1396 4 года назад

    Great explaination

  • @kuldeepsingh2983
    @kuldeepsingh2983 4 года назад +1

    thanks for reducing music volume. more concentrated now.

  • @princu1
    @princu1 4 года назад

    Best explanation thanks

  • @cyberpirate007
    @cyberpirate007 4 года назад +1

    You nailed it 🏁

  • @gousekgn9807
    @gousekgn9807 4 года назад

    had u learnt
    ccna
    ccnp
    ccie

  • @jashan8636
    @jashan8636 4 года назад

    Best explanation ever 💯💯👌. Thanks for sharing one another attack tutorial with us.

  • @bahymohamed5055
    @bahymohamed5055 4 года назад

    Can i use integrity while i am ouy of europe

  • @esoochannel3864
    @esoochannel3864 4 года назад

    Can you share this Lab ?

    • @FarahHawa
      @FarahHawa  4 года назад

      It's not a publicly available lab. It was created specially for this video.

  • @ronakparekh9063
    @ronakparekh9063 4 года назад +1

    i wana learn a English like you
    can you teach me plzzz
    plzzz reply
    love you my inspiration @FarahHawa

  • @bharathpatel1757
    @bharathpatel1757 4 года назад

    This is really amazing one.. keep uploading things ... and 😅 Btw what happened to your eyes dhidhi .. take a healthy sleep .. !!

  • @vrushabhdoshi5664
    @vrushabhdoshi5664 4 года назад

    Thanks for the video

  • @feynman8692
    @feynman8692 4 года назад

    great explaination farah ... just tell me there are most of the websites that uses jwt based auth right ? so is saml is also used that much ??

  • @renganathanofficial
    @renganathanofficial 4 года назад

    sister there are distortions in the sides of video , anyways awesome video ::))

  • @pravatkumarshadangi53
    @pravatkumarshadangi53 Год назад

    Helpful

  • @gamesjokes1969
    @gamesjokes1969 4 года назад

    Good job

  • @Nothing-lh9hp
    @Nothing-lh9hp 4 года назад

    Wow thanks so so much

  • @himanshukumar3734
    @himanshukumar3734 4 года назад

    Age?

  • @MrRaveen007
    @MrRaveen007 4 года назад

    one suggestion Speak little slow while preparing videos,felt little faster.but concepts are good.

    • @FarahHawa
      @FarahHawa  4 года назад

      I've tried to work on this in the latest video! Lmk if you think it made a difference!

  • @jyotiradityasingh6976
    @jyotiradityasingh6976 4 года назад

    Nice explanation watched almost all your videos...(A suggestion: You can smile a little while speaking or in introduction)

  • @linxack
    @linxack 4 года назад

    Nice!!!!

  • @msonawane81
    @msonawane81 4 года назад

    Now i can get more bounties

  • @pakflutterdeveloper
    @pakflutterdeveloper 4 года назад

    Thanks

  • @trustedsecurity6039
    @trustedsecurity6039 Год назад

    i think you didnt fully understood the comment injection xD

  • @KushChoudhary
    @KushChoudhary 4 года назад

    That’s great

  • @parthchaudhari1711
    @parthchaudhari1711 4 года назад

    How come you post the exact content which I want to know about

  • @Benjamin-il9sb
    @Benjamin-il9sb 2 года назад

    ahh Security Waring caught it

  • @HasanKhan-sj6zb
    @HasanKhan-sj6zb 4 года назад +2

    😘😘😘😘

  • @Sham-xg9kd
    @Sham-xg9kd 4 года назад +1

    Your pretty

  • @ashishchauhan9745
    @ashishchauhan9745 4 года назад

    Hindi me video kyu nahi banate aap

    • @annelisa2626
      @annelisa2626 4 года назад

      aap english kyu nahi seekh lete? woh Indians ke liye nahi sab ke liye video bana rahi hai. kripya karke English seekh le jaake. :)

  • @TheDreamsofMelany
    @TheDreamsofMelany 4 года назад

    For a god shake please start making courses . you're too good ;)

  • @GauravChawla111
    @GauravChawla111 2 года назад

    One humble feedback, I found your speed of talking a bit too much to understand what you are talking about, may be u can try to speak at a bit alow pace..

  • @anandoganiya9070
    @anandoganiya9070 4 года назад

    Ma'am can you please crack my cap file I want to use neighborhoods wifi

  • @0xsolo920
    @0xsolo920 4 года назад

    🔥🔥🔥

  • @OxOv3rH4uL
    @OxOv3rH4uL 4 года назад

    Thanks a lott mam! I hope you will fulfill the gap between what we get and what we want ! Liked and Subbed....

  • @lapuranjan5574
    @lapuranjan5574 4 года назад

    💘

  • @domi..infinityrider7293
    @domi..infinityrider7293 Год назад

    Very impressed i love you so cute 😘 🥰

  • @MuhammedRamshin
    @MuhammedRamshin 4 года назад

    thanks