I used sentinel on a website and I got the message saying that "found special chars in respnse which allow to break out from the tag" . Now I ain't understanding which is that char and how to build a payload to exploit xss. Will you please guide me in the same
@@sarfraz4274 it is easy. You should have burp suite professional version and in its extender configure jython file and then you'll see it's install option
Can we upload SHELL via XSS ? Or similar vulnerabilities exploitation methods like LFI, RFI, RCE to "upload SHELL" in web server directory to gain root access ? 🤔 . If yes, then please do educate us because I submitted many XSS popup vulnerability reports to HackerOne BugCrowd Integrity but all were rejected due to missing SERIOUS IMPACT. Hope to hear from you soon. Thanks 🤝 ❤💚💙✌💯👍
@gauravpawar5604 Yes. We can escalate self reflected XSS to RCE to connect two systems to run remote commands. I learned this technique from a practical bug hunting channel on TH-cam. Thanks ✅️
Sir mujhi ek chij sikhana hai aaj log price kaam hai phir price ko jada kar ke oder karte hai aise kaise sir karte hai jo ki impossible hai sir price ko high karna sir e commerce aise khuch bato sir price rilated dekhna hai mujhi sir log karte hai ya sab 🙏
Amazing Sir, Salute To YOur Knowledge Love You Sir From Pakistan
your channel is better than many paid courses people buying
can you share the extension file ,if you have it
bhyamkarrr .... yrr aapne too Bside GOA me diya gya knowledge se aage ka knowledge diye hoo ..
thanks a lot sir
Main samaj gaya, and achese samjaya aapne...
Thank You and Keep Smiling
Hi bro burp suite pro link he kya
Hi,,
Burpsuit pro windows ...
link milega kya bhai...
Love You Bro. Dimag ke Upar se Gaya. par 2-3 Bar Aur dekhunga to Aa Jayega. Again LOVE YOU
Mast samjhaya bhai..... 10/10 for ur videos ..... 🙌🙌🙌❤️
Bro thanks . It's helpful to teen hunters like me ❤❤
hlw bro
And I'm one them....
Thank u sir aur vi aisa hi video chaahiye me computer related student hu aapke video se bahut hame helpful hota he sir...
muzhe ata tha but apne ise aur jayada asan kr diya hai, Thanks...
wow.. learned something new. Thanks bro
just keep going bro. One day u vl have millions of users.
Bahat helpful hai bhai😊
The video is superb keep making bro. Its a good learning platform.
I want know can we have to take permission from web listed on hackeroone by mail them or any other option or we can do xss attack Directly
bhai esme mja aa gya very helpfully
Love from Bangladesh 😍😘
I used sentinel on a website and I got the message saying that "found special chars in respnse which allow to break out from the tag" . Now I ain't understanding which is that char and how to build a payload to exploit xss. Will you please guide me in the same
Can you plzz teach me all u know plzz😢
how to download sentinel...plzz reply
@@sarfraz4274 it is easy. You should have burp suite professional version and in its extender configure jython file and then you'll see it's install option
I have allready installed but I don't know how to use...I finded about sentinel video but I don't got :(
Thnku so much bro. You are a very good advantage for those who are new to cyber security.
Main Samaj Gayi😇👌
Nice
bro that was very nice video waiting for another one
I understood the whole concept.
thank s Bhai Abhi Mai penestration testing pad Raha hu Bhai kuch idea do our uske uper ka agla video banav bhai
First like ❤️
First view
First comment
First Heart❤️
@@SpinTheHack Softworkers ❤️💪
Superb ❤💖💖💖💖💖💖👍👍👍
Sir agar wo code website par laga hai TB to har ek visitor ko target karega aur agar code keval web page par hai to particular one ko target karega
Awsm bhai...
Hello I under stand this all. U r the best of
All thanks alot plz send me link of ur next video thanks alot
Ha bro I understand thanks
Sir from where I get the burpsuite pro version?
Nice work 🤟
Best is always the best.
Can we upload SHELL via XSS ? Or similar vulnerabilities exploitation methods like LFI, RFI, RCE to "upload SHELL" in web server directory to gain root access ? 🤔 . If yes, then please do educate us because I submitted many XSS popup vulnerability reports to HackerOne BugCrowd Integrity but all were rejected due to missing SERIOUS IMPACT. Hope to hear from you soon. Thanks 🤝 ❤💚💙✌💯👍
Try to retrieve cookies from it and then submit it. Hopefully, they will consider it.
yeah sure u can
No , It is not possible to upload webshell through xss because it is effects on client side.
@gauravpawar5604 Yes. We can escalate self reflected XSS to RCE to connect two systems to run remote commands. I learned this technique from a practical bug hunting channel on TH-cam. Thanks ✅️
I'm also a teen hunter!!!
Intruder ke thought xss attack kiya website ne block kar diya or wo bug baunty program main listed thi.......ab kya karu
I m here 😎
Sir mujhi ek chij sikhana hai aaj log price kaam hai phir price ko jada kar ke oder karte hai aise kaise sir karte hai jo ki impossible hai sir price ko high karna sir e commerce aise khuch bato sir price rilated dekhna hai mujhi sir log karte hai ya sab 🙏
Bro its cyber security channel....not commerce
sir bug bounti karne se pahle comapany se permissio lena padta hai ya fir agar lena padta hai to kaise le permission please bata dijiyega sir ji
Bai hamne hackerone ka tharah site use karooga
kam samjha lekin acha samjha
Hi.. I'm unable to see your update notification in telegram.. please guide me
very informative
Good knowledge bro
Thanks bro help full video
I need burpsuit professional version. where can i get it?
Sir code kaha inject krte hai Clint side se ya server side se
Thanks buddy ❤
Thanks Brother 😁
Samajh me aaya bhai
main samajh gaya dude
Bhai Google Chrome ki extension bana kr uski help se cookies kaise mil skti h
anuvab i need link of burpsuite
Hi, how to prevent xss on joomla CMS... In lang parameter can you share any solution?
Bro, your video is excellent . I learnt from it. but pls send the download link which is not existed now. Thanks
maja aa gaya sir
Agar kisi site pura pura script reflect karne lage to iska kya matlab hai??
anyone know ka jo telegram par burp suite pro ka zip folder ka password kia hai??
jiss ka yeh bta rahy
great bro
Bro sentinel google drive link in description is not working bro
Thnak you so much!!
Bro,is video me jo software installed karne ka bola he 5 mb ka,aapne jo lonk di he usme voh expire ho chuka he
Bro what about post parameter website was of get param so how to exploit a web of post
lovo u from bangladesh
Good agli video
Burpsuite installation wali video ka link do na bhai.. ya fir anubhav bhai ki id dedo
Brother please provide link to download file for extension above link is not working
that g drive link is not working
Great bro
mujy samaj agaya bahi
">
brother can you provide pro-burpsuit please..i am waiting for the reply
Sunita bhavi 😂😂
Mera burp suite latest hey par nhi aaraha hey
Mai smjh gaya
Kindly provide the burp pro. The link provided is expired
Brother the link which you have provided is expired
Thanks❤🌹
AnubhavBHAI vo link share kar sakte ho Burpsuite Pro ki?
Ya fir Koi or jisko pata ho vo share kardo
bhai file download hi nahi ho rhi hai ..what to do
discription source file link not working
burpsuite pro link pls
Superb 😉
bhai aap carryminati ka channel dekhte ho na sach batana 😂😂😂😂
bro last wali jo method h wo dusri site or work ni kr ra h
Sab jagah nahi karta wo kaam jaha xss hoti hai wahi karega
bhaiya agar serch box nahi hua website me tho script kaha pe dale?
URL m search parameter m jaakr search=? ....…..
File link not working plzz provide me
brother brupe suite ka professional version kase download kore
link was not working
good
Sanital kaha pe hey
Bhai sahi hai
sir drive file is not exist do something
Can you share again burpsuite professional link
thanks you bro
sir , please tell me how to download burp suite pro
sunita bhabhi op
Kam se kam is ma kitni bounty limit ha
Nice
SIr ji burp suite pro chahiya ha pls provide me
bro graphsql deep me sikaao na
Thank you sir.... Sir! me apke telegram se burp pro ka file download kiya hu..but usko unzip karneme password lagtahe...Please give this password....
senitel link is expired