Web App Testing: Episode 4 - XXE, Input Validation, Broken Access Control, and More XSS

Поделиться
HTML-код
  • Опубликовано: 16 ноя 2024

Комментарии • 41

  • @TCMSecurityAcademy
    @TCMSecurityAcademy  3 года назад +4

    I hope you enjoyed this video! If so, please consider dropping a like and subscribing.

  • @ads_to_malware
    @ads_to_malware Год назад +1

    Man, these courses have helped me with topics I have had difficulty with for so long. I really appreciate you for this.

  • @khanhinhan7783
    @khanhinhan7783 10 месяцев назад

    I have been following your tutorials all along from basic pentest, priv esc and now web testing. They are very informative and help me a lot! Thank you, Sir!

  • @bxareed9101
    @bxareed9101 5 лет назад +9

    Best cyber security teacher, with a motivating "humour" too!

  • @howtodothings7529
    @howtodothings7529 5 лет назад +4

    Bro keep doing what you're doing. We share a similar journey... I'm also a Vet (served in the Parachute Regiment), but then left a few years ago to pursue a career in Pen Testing...(also a dog dad haha). And out of any other RUclipsr, you've actually motivated me to create my own RUclips channel. But mainly to help reinforce my own education :)
    Keep it up brother!

    • @TCMSecurityAcademy
      @TCMSecurityAcademy  5 лет назад +2

      Awesome man! I look forward to seeing the content you put out :). We certainly need more content developers!

    • @howtodothings7529
      @howtodothings7529 5 лет назад

      @@TCMSecurityAcademy Thanks bro :) I'm going to write out a plan of what I plan to roll out. I've done a few videos that aren't really that technical, but just created and uploaded them for practice in just creating SOMETHING. Haha :)

  • @blaqsense8073
    @blaqsense8073 5 лет назад +3

    I download all your vids and then practice them on my own....Thanks alot....

  • @karthibalaji3817
    @karthibalaji3817 5 лет назад +3

    Congrats for 30k subs you are doing a great job! Keep it up. you'll deserve more buddy!

  • @cyber-glitch5314
    @cyber-glitch5314 5 лет назад +1

    Very good content , im behind with the lessons , but dosen't matter still learning ... all day every day .. good job .Hope you the best

  • @JohnSmith-my5hb
    @JohnSmith-my5hb 4 года назад +2

    48:54 XXE explained.

  • @cyberfreak2268
    @cyberfreak2268 5 лет назад +3

    Man don't you not having tired! All For the community💛 Owsome!

  • @isuruzranasinghe
    @isuruzranasinghe 5 лет назад +1

    The chief himself ❤❤

  • @Роберт-и8х
    @Роберт-и8х 5 лет назад +3

    LOVE YOU MAKE MORE OF VIDS!

  • @tayfun6378
    @tayfun6378 5 лет назад +3

    32:59 on-air accident :D

  • @rusirumunasinghe7354
    @rusirumunasinghe7354 5 лет назад +1

    Was waiting for thiz! Thanks Heath!

  • @yeasirarafat4261
    @yeasirarafat4261 5 лет назад +5

    What the heck was in review section! LMAO

  • @superman9300
    @superman9300 4 года назад

    Again - awesome video

  • @travisstanfield6627
    @travisstanfield6627 5 лет назад

    On the input validation portion regarding the price of items, how do you submit that for bug bounties normally? I have found this a few times over the years and each customer said completing the altered payment was illegal, but since I didn't prove it was actually true, I was not eligible for the bounty and then proceeded to fix the issue. Of course this is mostly low hanging fruit but I feel this is a loophole so they do not have to pay.

  • @losttapes2145
    @losttapes2145 5 лет назад +1

    you are the real ,mentor i have a question here, does installing Kali Linux direct on a laptop recommended as the main OS? is it unsafe? what about dual booting with an OS like windows? is it also unsafe?

    • @ZikzakHD
      @ZikzakHD 5 лет назад +2

      Before asking this question search it on internet cause it's a really frequent question...

    • @ferdinandomirabella1861
      @ferdinandomirabella1861 5 лет назад

      Virtualization or LiveUSB i recommend.. its Up to you...

  • @razmjumehdi9069
    @razmjumehdi9069 5 лет назад +1

    That's great like always :)

  • @RozzClips
    @RozzClips 3 года назад

    you're the best!

  • @Cygnus0lor
    @Cygnus0lor 4 года назад

    Hey have you worked with SAML Raider by chance? Just wanted a reliable source to learn all its bits and pieces.
    Thanks for the video by the way.

  • @ericcute6471
    @ericcute6471 5 лет назад +1

    Thanks so much sir

    • @ericcute6471
      @ericcute6471 5 лет назад

      By the way, I emailed you sir. You might want to consider it. Spread your legacy to us.

  • @yoshi5113
    @yoshi5113 4 года назад

    anyone here having problem with installing juice-shop in linux local environment? I have installed the npm and node.js but it still not working when I install the juice-shop. have an same problem with me? please help, thanks a lot

  • @hardwork3196
    @hardwork3196 5 лет назад +1

    love ur videos :)

  • @linnegilbert8458
    @linnegilbert8458 5 лет назад +1

    IM A QA AND WOULD TO DO pen TESTING...helP!!!!!!

  • @Musiclyrics-vj5br
    @Musiclyrics-vj5br 5 лет назад

    😢dont forget noobs , still waiting for 7th video

    • @Jack-gx8xn
      @Jack-gx8xn 5 лет назад

      Well, I have the same fear for this playlist. I hope he will complete web application penetration testing playlist.

    • @TCMSecurityAcademy
      @TCMSecurityAcademy  5 лет назад +3

      When have I never completed a playlist?

    • @Musiclyrics-vj5br
      @Musiclyrics-vj5br 5 лет назад

      @@TCMSecurityAcademy i just was afraid 😁 this series are vital for me i noticed there were several consecutive webapptest video and i thought maybe you are tired of teaching stupid easy stuff🤓

    • @Jack-gx8xn
      @Jack-gx8xn 5 лет назад

      @@TCMSecurityAcademy Ah, You are right :')