Paulo Mota | Segurança Ofensiva
Paulo Mota | Segurança Ofensiva
  • 32
  • 11 979
Top Hacking Tools para Bug Bounty + Insights
Subfinder:
github.com/projectdiscovery/subfinder
HTTPX:
github.com/projectdiscovery/httpx
Katana:
github.com/projectdiscovery/katana
FFUF:
github.com/ffuf/ffuf
Sugestões de wordlists:
Diretórios/Arquivos:
github.com/maverickNerd/wordlists/blob/master/files/big.txt
Nomes de parâmetros:
github.com/danielmiessler/SecLists/blob/master/Discovery/Web-Content/burp-parameter-names.txt
Fuzzing:
github.com/danielmiessler/SecLists/blob/master/Fuzzing/fuzz-Bo0oM.txt
github.com/danielmiessler/SecLists/blob/master/Fuzzing/fuzz-Bo0oM-friendly.txt
00:00 Intro
00:43 Disclaimer
01:40 Subfinder
06:16 HTTPX
16:05 Katana
21:59 FFUF
35:36 Subscribe!
มุมมอง: 362

วีดีโอ

Como começar no Bug Bounty em 2024
มุมมอง 2.7Kหลายเดือนก่อน
0:00 Intro 0:47 Inscreva-se em plataformas 8:03 Busque conhecimento 14:37 Construa sua metodologia 19:10 Mãos na massa #bugbounty #hackerone #burpsuite #pentest #idor #websecurity #hackingcourse
6K dollar bounty... XSS???
มุมมอง 1.2K2 หลายเดือนก่อน
6k dol XSS on HackerOne???? Vamos analisar e entender o bounty de 6k dólares do Erick Fernando, hacker brasileiro. Report e dados do Erick: erickfernandox.medium.com/6000-reward-how-i-did-a-global-stored-xss-via-reflected-log-cache-poisoning-on-starbucks-0496589d1052 hackerone.com/erickfernandox www.linkedin.com/in/erickfernandox/ #bugbounty #hackerone #burpsuite #pentest #idor #websecurity #ha...
Configurando seu servidor para automações em Bug Bounty e Pentest
มุมมอง 9193 หลายเดือนก่อน
Vamos aprender a configurar um servidor (VPS) Ubuntu para fazer automações e bots voltados para reconhecimento em bug bounty e pentests. Meu repositório no Github com todas as ferramentas: github.com/paulogmota/Bugbounty-VPS-config Meus links: linktr.ee/paulo.gmota
XSS #9 - Reflected XSS em Português
มุมมอง 2183 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o nono laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o XSS REFLETIDO (Reflected XSS into a JavaScript string with angle brackets HTML encoded) Link para o lab: portswigger.net/web-security/cross-site-scripting/contexts/lab-javascript-string-angle-brackets-html-encoded XSS Cheat Sheet portswigger.net/web-security/cross...
$4000.00 AWS Takeover + RCE na HackerOne by @ferreiraklet
มุมมอง 9794 หลายเดือนก่อน
Vamos analisar e entender o bounty de 4k dólares do Daniel Ferreira, hacker brasileiro. Report e dados do Ferreira: ferreiraklet.github.io/posts/4000BountyAws/ github.com/tomnomnom/fff hackerone.com/fklet?type=user #bugbounty #hackerone #burpsuite #pentest #idor #websecurity #hackingcourses
$5000.00 IDOR na HackerOne!
มุมมอง 1.1K4 หลายเดือนก่อน
Fala! Neste vídeo vamos explicar uma falha de IDOR encontrada no Reddit e reportada na Hackerone, que rendeu 5k dólares ao hacker que encontrou! Report original: hackerone.com/reports/1213237 Hacker: x.com/parasimpaticki #bugbounty #hackerone #burpsuite #pentest #idor #websecurity #hackingcourse
XSS #8 - Stored XSS em Português
มุมมอง 3184 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o oitavo laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o XSS Armazenado (Stored XSS into anchor href attribute with double quotes HTML-encoded) Link para o lab: portswigger.net/web-security/cross-site-scripting/contexts/lab-href-attribute-double-quotes-html-encoded XSS Cheat Sheet portswigger.net/web-security/cross-si...
XSS #7 - HTML-Encoded Angle Brackets Reflected XSS (XSS refletido com encoding) em Português
มุมมอง 2745 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o sétimo laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o XSS Refletido (Reflected XSS into attribute with angle brackets HTML-encoded) Link para o lab: portswigger.net/web-security/cross-site-scripting/contexts/lab-attribute-angle-brackets-html-encoded XSS Cheat Sheet portswigger.net/web-security/cross-site-scripting/...
XSS #6 - DOM XSS in jQuery selector sink using a hashchange event em Português
มุมมอง 1675 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o sexto laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o DOM XSS (DOM XSS in jQuery selector sink using a hashchange event) Link para o lab: portswigger.net/web-security/cross-site-scripting/dom-based/lab-jquery-selector-hash-change-event #bugbounty #portswigger #burpsuite #pentest #xss #websecurity
XSS #5 - DOM XSS in jQuery anchor href attribute sink em Português
มุมมอง 1546 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o quinto laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o DOM XSS (DOM XSS in jQuery anchor href attribute sink using location.search source) Link para o lab: portswigger.net/web-security/cross-site-scripting/dom-based/lab-jquery-href-attribute-sink #bugbounty #portswigger #burpsuite #pentest #xss #websecurity
XSS #4 - DOM XSS in innerHTML sink using source location.search Em Português
มุมมอง 1826 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o quartolaboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o DOM XSS (DOM XSS in innerHTML sink using source location.search) Link para o lab: portswigger.net/web-security/cross-site-scripting/dom-based/lab-innerhtml-sink #bugbounty #portswigger #burpsuite #pentest
XSS #3 - DOM XSS in document.write sink using source location.search Em Português
มุมมอง 1627 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o terceiro laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre o DOM XSS (DOM XSS in document.write sink using source location.search) Link para o lab: portswigger.net/web-security/cross-site-scripting/dom-based/lab-document-write-sink #bugbounty #portswigger #burpsuite #pentest
XSS #2 - Stored XSS (XSS Armazenado) em Português
มุมมอง 1717 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o segundo laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, que fala sobre XSS Armazenado. Link para o lab: portswigger.net/web-security/cross-site-scripting/stored/lab-html-context-nothing-encoded #bugbounty #portswigger #burpsuite #pentest
XSS #1 - Reflected XSS into HTML context with nothing encoded em Português + dicas de bug bounty
มุมมอง 3497 หลายเดือนก่อน
Fala pessoal! Neste vídeo resolveremos o primeiro laboratório de Cross-Site Scripting (XSS) da PortSwigger Web Academy, e também aprenderemos algumas técnicas e ferramentas utilizadas em pentest/bug bounty para encontrar XSS. portswigger.net/web-security/cross-site-scripting/reflected/lab-html-context-nothing-encoded Scripts utilizados (todos requerem o Golang como pré-requisito): Katana - gith...
SQL Injection #17: Blind SQL injection with filter bypass via XML encoding - em Português
มุมมอง 2767 หลายเดือนก่อน
SQL Injection #17: Blind SQL injection with filter bypass via XML encoding - em Português
SQL Injection #16: Blind SQL injection with out-of-band interaction - em Português
มุมมอง 1397 หลายเดือนก่อน
SQL Injection #16: Blind SQL injection with out-of-band interaction - em Português
SQL Injection #15: Time delays and information retrieval - em Português
มุมมอง 1288 หลายเดือนก่อน
SQL Injection #15: Time delays and information retrieval - em Português
SQL Injection #14 - Blind SQL injection with time delays - em Português
มุมมอง 10210 หลายเดือนก่อน
SQL Injection #14 - Blind SQL injection with time delays - em Português
SQL Injection #13 - Visible error-based SQL injection - em Português
มุมมอง 8111 หลายเดือนก่อน
SQL Injection #13 - Visible error-based SQL injection - em Português
SQL Injection #12 - Blind SQL injection with conditional errors - em Português
มุมมอง 9711 หลายเดือนก่อน
SQL Injection #12 - Blind SQL injection with conditional errors - em Português
SQL Injection #11 - Blind SQL injection with conditional responses
มุมมอง 15811 หลายเดือนก่อน
SQL Injection #11 - Blind SQL injection with conditional responses
SQL Injection #10 - UNION attack, retrieving multiple values in a single column - em Português
มุมมอง 10211 หลายเดือนก่อน
SQL Injection #10 - UNION attack, retrieving multiple values in a single column - em Português
SQL Injection #9 - SQL injection UNION attack, retrieving data from other tables - em Português
มุมมอง 98ปีที่แล้ว
SQL Injection #9 - SQL injection UNION attack, retrieving data from other tables - em Português
SQL Injection #8 - SQL injection UNION attack, finding a column containing text - em Português
มุมมอง 77ปีที่แล้ว
SQL Injection #8 - SQL injection UNION attack, finding a column containing text - em Português
SQL Injection #7 - UNION attack, determining the number of columns returned by the query - PT-BR
มุมมอง 73ปีที่แล้ว
SQL Injection #7 - UNION attack, determining the number of columns returned by the query - PT-BR
SQL Injection #6 - SQL injection attack, listing the database contents on Oracle - em Português
มุมมอง 144ปีที่แล้ว
SQL Injection #6 - SQL injection attack, listing the database contents on Oracle - em Português
SQL Injection #5 - SQLi attack, Listing the database contents on non-Oracle databases - em Português
มุมมอง 122ปีที่แล้ว
SQL Injection #5 - SQLi attack, Listing the database contents on non-Oracle databases - em Português
SQL Injection #4 -Querying the database type and version on MySQL and Microsoft - em Português
มุมมอง 164ปีที่แล้ว
SQL Injection #4 -Querying the database type and version on MySQL and Microsoft - em Português
SQL Injection #3 - SQLi attack, querying the database type and version on Oracle - em Português
มุมมอง 164ปีที่แล้ว
SQL Injection #3 - SQLi attack, querying the database type and version on Oracle - em Português

ความคิดเห็น

  • @luzivangois8404
    @luzivangois8404 วันที่ผ่านมา

    Meu amigo, cada vídeo é uma aula completa! Que show! 👏👏👏

    • @paulogmota
      @paulogmota วันที่ผ่านมา

      Que bom que curtiu Luzivan! 👏👏👏👏

  • @lupedsagaces
    @lupedsagaces 4 วันที่ผ่านมา

    Parabéns por sempre estar trazendo conteúdo de qualidade na área de segurança! Tmj 🎉

    • @paulogmota
      @paulogmota วันที่ผ่านมา

      TMJ Luped! Obrigado pelo feedback irmão

  • @irmaodojorel2414
    @irmaodojorel2414 4 วันที่ผ่านมา

    Que conteúdo massa mano, sensacional

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Obrigado! 🤝🏻

  • @r3n4d0wn
    @r3n4d0wn 4 วันที่ผ่านมา

    conteúdo Q U A L I D A D E

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Tmj 🫡

  • @se78404
    @se78404 4 วันที่ผ่านมา

    Mais um excelente vídeo Paulo. Parabéns e obrigado pelo conteúdo. Tem me ajudando mto. Vc poderia dar algumas dicas se possível sobre como podemos gerar uma wordlist "boa"? Quanto ao FFUF existe alguma boa prática para evitar um banimento de IP ou algo do tipo?

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Sobre a wordlist, sugiro pegar boas wordlists já existentes e ir incrementando com outras que você vai encontrando pelo caminho. Mas isso aí realmente só testando e vendo quais funcionam bem na prática. Quanto ao ffuf, eu rodo ele puro mesmo. Mas ele tem opções de threads e rate limit que podem evitar tomar bloqueio. Funciona tb rodar de um IP diferente do seu, por exemplo em uma VPS diferente

  • @arthurfariax
    @arthurfariax 5 วันที่ผ่านมา

    É o especialista, não tem jeito 🔥 parabéns pelo vídeo

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Que nada! Tmj irmão 🔥

    • @riluxff6379
      @riluxff6379 21 ชั่วโมงที่ผ่านมา

      cara vi seu canal aqui, gostei bastante, volta a grava vídeos, sobre a fiap em (Defesa Cibernética - Ethical Hacking, Forensics & Secure Devops) qual seria o valor da mensalidade ou do curso, vi seu vídeo e me levantou bastante vontade de fazer

  • @OFJAAAH
    @OFJAAAH 5 วันที่ผ่านมา

    Top demais meu irmãozão ❤🎉

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Obrigado meu irmão 🤝🏻🤝🏻

  • @808XAND
    @808XAND 5 วันที่ผ่านมา

    muito bom, manoo🔥🔥

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      Obrigado mestre 🔥

  • @Padi-z6n
    @Padi-z6n 5 วันที่ผ่านมา

    😎

    • @paulogmota
      @paulogmota 4 วันที่ผ่านมา

      😎

  • @diogomelo5911
    @diogomelo5911 16 วันที่ผ่านมา

    Passa o link dos cursos desse cara ai

    • @paulogmota
      @paulogmota 13 วันที่ผ่านมา

      pay.kiwify.com.br/4euUxlc Esse aí!

  • @alexandresantosal
    @alexandresantosal 22 วันที่ผ่านมา

    Parabéns pelo conteúdo...

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      Tamo junto, Alexandre!

  • @cr1pt0Kn1ght
    @cr1pt0Kn1ght 23 วันที่ผ่านมา

    Parabéns por ajudar, vídeo excelente. Depois se poder faz um video mostrando alguma ferramenta sendo utilizada num Bug Bounty.

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      Tá em mente para o próximo vídeo mesmo! Obrigado 🤝🏻

  • @cr1pt0Kn1ght
    @cr1pt0Kn1ght 25 วันที่ผ่านมา

    Como que se digita o nome da pessoa que você comprou o curso 9:30 ?

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      É o Ofjaaah, dá uma pesquisada por ele no YT e Google!

    • @paulogmota
      @paulogmota 13 วันที่ผ่านมา

      Aqui o link para o curso: pay.kiwify.com.br/4euUxlc

  • @Mr_ofcodyx
    @Mr_ofcodyx 25 วันที่ผ่านมา

    Ferreirinha é muito Insano 😎

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      Sem condições!

  • @Mr_ofcodyx
    @Mr_ofcodyx 25 วันที่ผ่านมา

    Muito bém explicado.

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      Que bom que curtiu! 🤝🏻

  • @fazendeirocaipira714
    @fazendeirocaipira714 25 วันที่ผ่านมา

    Vc acha que um programador de sistemas desktop pode ser considerado um hacker? Assim, eles usam nmap e outra ferramentas para descobrir vuln em softwares, né?

    • @paulogmota
      @paulogmota 18 วันที่ผ่านมา

      Na minha opinião, não. O que vai mudar é a mentalidade. Um programador constrói algo, pensa em como fazer coisas funcionarem. O hacker pensa em formas de obter vantagem sobre sistemas ou subverter a lógica das coisas através do conhecimento. Nenhuma ferramenta vai te tornar hacker, mas o que você faz com ela, seu conhecimento e capacidade de subverter coisas, sim.

    • @fazendeirocaipira714
      @fazendeirocaipira714 18 วันที่ผ่านมา

      @@paulogmota entendi. Mt obg por ter me respondido

  • @T1LT4S
    @T1LT4S หลายเดือนก่อน

    Que vídeo ESSENCIAL man... muito TOP 🎉🚀🚀

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Que bom que curtiu man 🤝🏻🤝🏻🤝🏻

  • @marcotuliocnd
    @marcotuliocnd หลายเดือนก่อน

    meu problema no momento é que só estou conseguindo achar vulnerabilidades em 1 programa, os demais programas que tento só acho duplicadas ou informativas. Bate aquela insegurança de só estar conseguindo encontrar as vulnerabilidades em um programa por estar mto fácil

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Entendo, mas que bom que está enconttando vulns! Continue no foco, todo dia tentando, estudando, lendo artigos e técnicas de exploração novas. Logo logo seu leque de achados vai aumentar, tanto em vulnerabilidades quanto programas diferentes

  • @Shendu99
    @Shendu99 หลายเดือนก่อน

    Ótimo vídeo, não conhecia essas plataformas de labs. Tu paga todas? Parabéns pelo trabalho

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Atualmente pago apenas pelo Pentesterlab. Tmj irmão 🤝🤝🤝

  • @Geek_Strong
    @Geek_Strong หลายเดือนก่อน

    Esse último não conhece?😅

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Nunca nem vi!

  • @otavioquadros
    @otavioquadros หลายเดือนก่อน

    Parabéns pelo vídeos. Otimo conteúdo!

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Muito obrigado, Otavio! Feliz que tenha curtido 🤝🏻👊🏻

  • @allyssonbrenner5171
    @allyssonbrenner5171 หลายเดือนก่อน

    é o brabo

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Tmj Brenner!

  • @c4ng4c3ir0
    @c4ng4c3ir0 หลายเดือนก่อน

    Parabéns pelo conteúdo e obrigado pela menção, mestre! 🙏🏻🤝🏻

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Bom que gostou, meu amigo. ❤️🙏🏻

  • @Lanbyteach
    @Lanbyteach หลายเดือนก่อน

    esse ultimo eu não conheço kkkkkkkk

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Po nem eu! Não to entendendo a risadinha do pessoal

  • @Lanbyteach
    @Lanbyteach หลายเดือนก่อน

    encontrar a senha padrão é foda viu kkkk

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Pior que acontece e muito. Aquele vacilo rápido que o time de infra deixa passar, mas que o bug hunter pega 🤓

  • @Lanbyteach
    @Lanbyteach หลายเดือนก่อน

    top

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      🤝🏻

  •  หลายเดือนก่อน

    Adorei o conteúdo! Grata por compartilhar!!

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Bom que gostou!

  • @lehmariaa
    @lehmariaa หลายเดือนก่อน

    Conteúdo top demais

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Bom que gostou, obrigado!! 🙏🏻

  • @OFJAAAH
    @OFJAAAH หลายเดือนก่อน

    Tu é sinistro meu irmão! Parabéns demais obrigado pelas menções ❤ tu é sinistro demais

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Que isso meu amigo! É uma honra sempre, você nos inspira 🔥👊🏻

  • @chor4oh4x0r
    @chor4oh4x0r หลายเดือนก่อน

    boa!!

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Tmj Chorão! Vc é 10

  • @ch4r4d4_sec
    @ch4r4d4_sec หลายเดือนก่อน

    contúdoo toppp demaissss!!!! vleu pelo compartilhamento!!💻🔥🔥

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Tmj Charada! Bom que gostou irmão

  • @gbaq88
    @gbaq88 หลายเดือนก่อน

    O ultimo nao conheço... Kkkkk pra testar tem que dar uma olhada... Show de bola o video

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Pior que também não… tem uns aí bem loucos e desconhecidos. Tmj brother 🤝🏻🤝🏻🤝🏻

  • @ivoabreu94
    @ivoabreu94 หลายเดือนก่อน

    Mestre demais, excelente tema e abordagem

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Obrigado grande Ivo! Bom que gostou irmão

  • @808XAND
    @808XAND หลายเดือนก่อน

    ótimo conteúdo,manoo🔥🔥

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Obrigado, giga!

  • @douglasviana7519
    @douglasviana7519 หลายเดือนก่อน

    Que vídeo top!! vou começar a me preparar para fazer bug bounty, e provavelmente documentar o processo no youtube, assim que encontrar minha primeira falha te aviso 👊🏾

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Bom que curtiu, Douglas! Mande mesmo, quero ver bounty 🤝🏻

  • @hydd3nsec
    @hydd3nsec หลายเดือนก่อน

    7:00 Conhece sim danadinho! 🤣🤣🤣 Ótimo vídeo meu mano!

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Nunca nem vi!

  • @MoluckYT
    @MoluckYT หลายเดือนก่อน

    O homi amassa demaiisss

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Tmj meu bro, tu q amassa

  • @flamengomalvadao6426
    @flamengomalvadao6426 หลายเดือนก่อน

    mito💟💟💟💟💟

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Que issoo 🔥

  • @hackerdobem94
    @hackerdobem94 หลายเดือนก่อน

    Muito Bom!!!! Parabéns pelo ÓTIMO conteúdo! Agregando MUITO

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Muito obrigado irmão! Aprendendo contigo 🔥🤝🏻

  • @Padi-z6n
    @Padi-z6n หลายเดือนก่อน

    Lenda

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Tmj gigante 🤝🏻🤝🏻

  • @0xm1les
    @0xm1les 2 หลายเดือนก่อน

    Seria interessante você fazer um video sobre como ingressar no mercado do bug bounty e conhecimentos necessários para poder atuar!!!

    • @paulogmota
      @paulogmota หลายเดือนก่อน

      Excelente ideia!

  • @richardribeiro1130
    @richardribeiro1130 2 หลายเดือนก่อน

    Excelente simples assim Excelente obrigado.

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Bom que gostou, Richard!

  • @secr3t0exe
    @secr3t0exe 2 หลายเดือนก่อน

    Obrigado pelo conteudo! Realmente incrivel a mentalidade do rapaz! Oque poderia ser 100 doletas.

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Sinistro demais né?

  • @reacenderachama5779
    @reacenderachama5779 2 หลายเดือนก่อน

    Cara seu canal e muito foda❤

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Obrigado demais! Que bom que curtiu 🔥

  • @saints1902
    @saints1902 2 หลายเดือนก่อน

    Fora da curva!! fera demais!!

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Muito! O cara é fera

  • @se78404
    @se78404 2 หลายเดือนก่อน

    Grande Paulo, Parabéns pelo excelente video. Tamo junto.

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Que bom que curtiu! Se tiver alguma sugestão só mandar!

    • @se78404
      @se78404 2 หลายเดือนก่อน

      @@paulogmota Cara esse estilo de vídeo fazendo um "review" de reports é mto bom. Outra parada legal seria algo no estilo dos vídeos que tu fez de XSS + ferramentas para bug bounty!!!

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      @@se78404 Excelente sugestão, meu nobre. Vou reunir algum material com técnicas bacanas para trazer um vídeo dessa forma futuramente

  • @irmaodojorel2414
    @irmaodojorel2414 2 หลายเดือนก่อน

    Mais um vídeo foda demais!!

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Tmj Jorel!

  • @mrccrqr8303
    @mrccrqr8303 2 หลายเดือนก่อน

    o XSS mais lindo que já vi 🤩 Imagina seu código JS sendo disponibilizado em tempo real em todos os domínios principais de uma empresa gigante.. $6k de recompensa foi bem pouco, na vdd, considerando impacto de negócios, mas é o máximo do programa..

    • @paulogmota
      @paulogmota 2 หลายเดือนก่อน

      Sinistro né? Isso em mãos erradas poderia causar um baita estrago

    • @brunoaleixo768
      @brunoaleixo768 14 วันที่ผ่านมา

      Esse é o maior problema dos programas de Bug Bounty. As vulnerabilidades encontradas raramente pagam o que deveriam pagar

  • @Padi-z6n
    @Padi-z6n 2 หลายเดือนก่อน

    Mais um vídeo fantástico! Duas lendas no mesmo vídeo, parabéns mestre Erick e mestre Pr0t31n, daleeeeeeeeeeeh

  • @leomilitz2
    @leomilitz2 2 หลายเดือนก่อน

    pra meter um XSS desse nível não pode estar puro das ideias, muito foda o vídeo Paulão