Directory Traversal attacks are scary easy

แชร์
ฝัง
  • เผยแพร่เมื่อ 28 ก.ย. 2024

ความคิดเห็น • 20

  • @CyberDTech
    @CyberDTech 8 หลายเดือนก่อน +2

    easy tip, copy all the possible directory traversal payloads, go to your intruder, paste it there, then attack, observe the response codes and wait for whichever that gives you 200k. saves you so much stress btw.

  • @j3z741
    @j3z741 ปีที่แล้ว +17

    7:32 i think you forgot to remove the 'f' before 'etc'

    • @AEURRR
      @AEURRR ปีที่แล้ว +2

      true

  • @blaqsense8073
    @blaqsense8073 ปีที่แล้ว +8

    Love your teaching.... great job and learned something today

  • @whitehat_stanley
    @whitehat_stanley ปีที่แล้ว +1

    I am trying to purchase the 'pratical ethical hacking course' on TCM security website but i keep getting directed to the order page where I have pay for monthly subscription, i dont want monthly subscriptions i just want to pay for one course only.. I need your assistance

    • @babayaga8663
      @babayaga8663 ปีที่แล้ว +1

      I think they changed from single course system to monthly subscription. They've already talked about it.

  • @fejoko7900
    @fejoko7900 ปีที่แล้ว +2

    Why do all people use foxy proxy instead of using the integrated browser in burpsuite? I dont get the difference....

    • @kexerino
      @kexerino ปีที่แล้ว +1

      I don't really know how the burp browser works, but maybe saved bookmarks and extensions?

    • @xSkidMarx
      @xSkidMarx ปีที่แล้ว

      foxy proxy is an nsa honey pot so it helps our nation state improve their web attacks

    • @L337H4X
      @L337H4X ปีที่แล้ว +2

      Idk, but what is first obvious to me is probably because It's quick to switch between different ports and IPS as you can add differen profiles. Even if you plan to just use Burpsuit or just one port eg. 8080, having the extention pre-setup means you can just enable it by clicking the extention instead of always going to settings, searching, and finding the network settings, and then manually typing the port and host everytime. Useful for people that do this often

    • @william_ade
      @william_ade ปีที่แล้ว

      Sometimes the community version has issues

    • @trikto9120
      @trikto9120 10 หลายเดือนก่อน

      @@L337H4X yes

  • @ihavelowiq2723
    @ihavelowiq2723 ปีที่แล้ว +1

    3:24 can some one says what was that windows readable file

  • @danielkibret8271
    @danielkibret8271 6 หลายเดือนก่อน

    WOW Really Amazing 😋😋😋

  • @lokeshn8850
    @lokeshn8850 10 หลายเดือนก่อน

    Amazing teacher.

  • @wendy_113
    @wendy_113 ปีที่แล้ว

    “Many thanks”

  • @lancemarchetti8673
    @lancemarchetti8673 ปีที่แล้ว

    Oh yeah!

  • @alejandroparrello6493
    @alejandroparrello6493 ปีที่แล้ว

    Amazing Sr!! Could you show us how to test on IIS services? Or some examples where to read about?
    Regards from Argentina 🫡🙌