XSS(Cross-site scripting) via X-Forwarded-Host header
https://medium.com/@abhijeetbiswas_/xss-cross-site-scripting-via-x-forwarded-host-header-20be114d4254?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@abhijeetbiswas_/xss-cross-site-scripting-via-x-forwarded-host-header-20be114d4254?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
XSS via X-Forwarded-Host header
I am Abhijeet Biswas, a Security Researcher. I have been studying, practicing, and learning about Web Application Security Vulnerabilities and Bug Bounties. Cross-site scripting (also known as XSS)…
Continue reading on Medium » (https://medium.com/@abhijeetbiswas_/xss-cross-site-scripting-via-x-forwarded-host-header-20be114d4254?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
XSS via X-Forwarded-Host header
I am Abhijeet Biswas, a Security Researcher. I have been studying, practicing, and learning about Web Application Security Vulnerabilities and Bug Bounties. Cross-site scripting (also known as XSS)…
hacking: security in practice
What programs to crack acc’s?
I want to crack accounts on certain platforms to sell but don’t know where to start and would like some advice. Any tips are helpful.
submitted by /u/general-schlieffen
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
What programs to crack acc’s?
I want to crack accounts on certain platforms to sell but don’t know where to start and would like some advice. Any tips are helpful.
submitted by /u/general-schlieffen
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
What programs to crack acc’s?
I want to crack accounts on certain platforms to sell but don’t know where to start and would like some advice. Any tips are helpful.
How to get started hacking django applications
https://noob3xploiter.medium.com/how-to-get-started-hacking-django-applications-f407564df9c7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://noob3xploiter.medium.com/how-to-get-started-hacking-django-applications-f407564df9c7?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Get Started Hacking Django Based Applications
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…Continue reading on Medium » (https://noob3xploiter.medium.com/how-to-get-started-hacking-django-applications-f407564df9c7?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Get Started Hacking Django Based Applications
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Top 10 Certification Courses To start a Career in Cybersecurity
https://cdn-images-1.medium.com/max/615/1*2D9kwkJZxPvT3eGBE9PGsQ.jpeg
Cybersecurity is the most debated topic since the onset of the pandemic. It deals with the protection/security of internet-connected…
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Top 10 Certification Courses To start a Career in Cybersecurity
https://cdn-images-1.medium.com/max/615/1*2D9kwkJZxPvT3eGBE9PGsQ.jpeg
Cybersecurity is the most debated topic since the onset of the pandemic. It deals with the protection/security of internet-connected…
Continue reading on InfoSec Write-ups »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Top 10 Certification Courses To start a Career in Cybersecurity
Cybersecurity is the most debated topic since the onset of the pandemic. It deals with the protection/security of internet-connected…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
XSS(Cross-site scripting) via X-Forwarded-Host header
https://cdn-images-1.medium.com/max/600/1*qmApIhdf2rzEG3dZhtctOw.png
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
XSS(Cross-site scripting) via X-Forwarded-Host header
https://cdn-images-1.medium.com/max/600/1*qmApIhdf2rzEG3dZhtctOw.png
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
XSS via X-Forwarded-Host header
I am Abhijeet Biswas, a Security Researcher. I have been studying, practicing, and learning about Web Application Security Vulnerabilities and Bug Bounties. Cross-site scripting (also known as XSS)…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
How to get started hacking django applications
https://cdn-images-1.medium.com/max/748/1*lPimpxKiWKeBRFuMRFq5Dw.png
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
How to get started hacking django applications
https://cdn-images-1.medium.com/max/748/1*lPimpxKiWKeBRFuMRFq5Dw.png
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
How To Get Started Hacking Django Based Applications
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…
How to get started hacking django applications
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…Continue reading on Medium »
Read more...
Django is a python based web framework. In this writeup, i will teach you how to analyze django based applications . For this writeup, i…Continue reading on Medium »
Read more...
PORTSWIGGER WEB SECURITY - OS COMMAND INJECTION LAB ÇÖZÜMLERİ
OS Command Injection, bir web uygulama sunucusunda, saldırganın rastgele işletim sistemi (OS) komutları çalıştırmasına ve uygulama…Continue reading on Medium »
Read more...
OS Command Injection, bir web uygulama sunucusunda, saldırganın rastgele işletim sistemi (OS) komutları çalıştırmasına ve uygulama…Continue reading on Medium »
Read more...
Can I get a raw and live HTTP or TCP log of my browser?
https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/
I'm not a huge fan of my browsers network monitor (https://developer.mozilla.org/en-US/docs/Tools/Network_Monitor). Sometimes I'd prefer to just see the raw HTTP traffic, preferably live. Is there any software/setup for this? tcpdump works for me on unencrypted HTTP traffic, although I'm also getting the TCP "overhead" with it, which is a little annoying. For HTTPS traffic, however, I have no solution yet. Is there any software which allows me to see the raw HTTP traffic of my browser? Seeing the raw TCP traffic would also be OK if HTTP is not possible. I'm imagining something like a proxy (which knows my TLS secret key), to which I can point my browser and which just dumps all traffic that goes through it on stdout or into a file. submitted by /u/codesoap (https://www.reddit.com/user/codesoap)
[link] (https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/) [comments] (https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/)
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/
I'm not a huge fan of my browsers network monitor (https://developer.mozilla.org/en-US/docs/Tools/Network_Monitor). Sometimes I'd prefer to just see the raw HTTP traffic, preferably live. Is there any software/setup for this? tcpdump works for me on unencrypted HTTP traffic, although I'm also getting the TCP "overhead" with it, which is a little annoying. For HTTPS traffic, however, I have no solution yet. Is there any software which allows me to see the raw HTTP traffic of my browser? Seeing the raw TCP traffic would also be OK if HTTP is not possible. I'm imagining something like a proxy (which knows my TLS secret key), to which I can point my browser and which just dumps all traffic that goes through it on stdout or into a file. submitted by /u/codesoap (https://www.reddit.com/user/codesoap)
[link] (https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/) [comments] (https://www.reddit.com/r/Pentesting/comments/sg509j/can_i_get_a_raw_and_live_http_or_tcp_log_of_my/)
___________________________
@hacking_Attack
@Hacking_Video
reddit
Can I get a raw and live HTTP or TCP log of my browser?
I'm not a huge fan of [my browsers network monitor](https://developer.mozilla.org/en-US/docs/Tools/Network_Monitor). Sometimes I'd prefer to just...
PORTSWIGGER WEB SECURITY - OS COMMAND INJECTION LAB ÇÖZÜMLERİ
https://ariarif.medium.com/portswigger-web-security-os-command-injection-lab-%C3%A7%C3%B6z%C3%BCmleri%CC%87-36fe23f3f499?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://ariarif.medium.com/portswigger-web-security-os-command-injection-lab-%C3%A7%C3%B6z%C3%BCmleri%CC%87-36fe23f3f499?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
PORTSWIGGER WEB SECURITY - OS COMMAND INJECTION LAB ÇÖZÜMLERİ
OS Command Injection, bir web uygulama sunucusunda, saldırganın rastgele işletim sistemi (OS) komutları çalıştırmasına ve uygulama…
OS Command Injection, bir web uygulama sunucusunda, saldırganın rastgele işletim sistemi (OS) komutları çalıştırmasına ve uygulama…Continue reading on Medium » (https://ariarif.medium.com/portswigger-web-security-os-command-injection-lab-%C3%A7%C3%B6z%C3%BCmleri%CC%87-36fe23f3f499?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
PORTSWIGGER WEB SECURITY - OS COMMAND INJECTION LAB ÇÖZÜMLERİ
OS Command Injection, bir web uygulama sunucusunda, saldırganın rastgele işletim sistemi (OS) komutları çalıştırmasına ve uygulama…
Price Tampering | Buying T-Shirts at 2 INR
https://medium.com/@vflexo/price-tampering-buying-t-shirts-at-2-inr-6a02e063f60e?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@vflexo/price-tampering-buying-t-shirts-at-2-inr-6a02e063f60e?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Price Tampering | Buying T-Shirts at 2 INR
Hello Weirdos!!! Today I am going to share a write-up on a weird price tampering vulnerability I found a few months ago(currently patched).