Web App Pentesting - HTTP Cookies & Sessions

แชร์
ฝัง
  • เผยแพร่เมื่อ 15 เม.ย. 2022
  • Welcome to the all-new, revamped Web App Pentesting course, in this video, I explain what HTTP cookies and session IDs are used for, and how they can be exploited by attackers.
    //LINKS
    DVWA Docker Image: hub.docker.com/r/vulnerables/...
    DVWA GitHub Repo: github.com/digininja/DVWA
    Get started with Intigriti: go.intigriti.com/hackersploit
    //PLATFORMS
    BLOG ►► bit.ly/3qjvSjK
    FORUM ►► bit.ly/39r2kcY
    ACADEMY ►► bit.ly/39CuORr
    //SOCIAL NETWORKS
    TWITTER ►► bit.ly/3sNKXfq
    DISCORD ►► bit.ly/3hkIDsK
    INSTAGRAM ►► bit.ly/3sP1Syh
    LINKEDIN ►► bit.ly/360qwlN
    PATREON ►► bit.ly/365iDLK
    MERCHANDISE ►► bit.ly/3c2jDEn
    //BOOKS
    Privilege Escalation Techniques ►► amzn.to/3ylCl33
    Docker Security Essentials (FREE) ►► bit.ly/3pDcFuA
    //SUPPORT THE CHANNEL
    NordVPN Affiliate Link (73% Off) ►► bit.ly/3DEPbu5
    Get $100 In Free Linode Credit ►► bit.ly/3yagvix
    //CYBERTALK PODCAST
    Spotify ►► spoti.fi/3lP65jv
    Apple Podcasts ►► apple.co/3GsIPQo
    //WE VALUE YOUR FEEDBACK
    We hope you enjoyed the video and found value in the content. We value your feedback, If you have any questions or suggestions feel free to post them in the comments section or contact us directly via our social platforms.
    //THANK YOU!
    Thanks for watching!
    Благодарю за просмотр!
    Kiitos katsomisesta
    Danke fürs Zuschauen!
    感谢您观看
    Merci d'avoir regardé
    Obrigado por assistir
    دیکھنے کے لیے شکریہ
    देखने के लिए धन्यवाद
    Grazie per la visione
    Gracias por ver
    شكرا للمشاهدة
    -----------------------------------------------------------------------------------
    #Pentesting#Cybersecurity
  • วิทยาศาสตร์และเทคโนโลยี

ความคิดเห็น • 55

  • @roccoranallo4027
    @roccoranallo4027 2 ปีที่แล้ว +29

    Dude your videos are so fire, I got a bachelors in cyber and I have learned soooooo much from your videos because of the way you explain the concepts, bought your book too looking forward to reading it, Thank you!

    • @0x1sac
      @0x1sac 2 ปีที่แล้ว

      @Michael Van Winkle I KNOW ALL THE BEST SHORTCUTS, YOU JUST HAVE TO-

  • @ICOFRITE
    @ICOFRITE 2 ปีที่แล้ว

    Alexis you are genuinely a marvel. Thank you so much for all you do

  • @skynet.yousha
    @skynet.yousha 2 ปีที่แล้ว +1

    High quality explanation, Alexis!! Well keep it up. Learned lots from you.

  • @jpierce2l33t
    @jpierce2l33t 2 ปีที่แล้ว +2

    Dude, another great one! I've been wanting to get into more web stuff, and bug bounties etc..and this stuff is invaluable! I know Burp some, but only have the community edition...just downloaded ZAP and have started to learn it a bit. I just noticed you had some videos using that as well!

  • @vladyslavv3154
    @vladyslavv3154 2 ปีที่แล้ว +1

    Huge appreciation for this video, keep it up, man!

  • @homeofcreation
    @homeofcreation 2 ปีที่แล้ว +1

    Excellent demo with explanations. Thank you very much.

  • @rudrasalaria3431
    @rudrasalaria3431 2 ปีที่แล้ว +1

    Always waiting for your video. Thank you Sir. Lots of Love from India 🇮🇳 ♥️

  • @DG-if3gs
    @DG-if3gs 2 ปีที่แล้ว

    i always like your sharing without looking at it. i know that they are valuable.

  • @arenaesports2580
    @arenaesports2580 2 ปีที่แล้ว

    Great knowledge comes from a great heart. 👍🏻

  • @Sc00by383
    @Sc00by383 2 ปีที่แล้ว +1

    Thanks Alexis giving me great knowledge of this.

  • @gonzalogermano2312
    @gonzalogermano2312 2 ปีที่แล้ว

    awesome video and very easy to understand , keep up the excellent knowledge level!!! thanks

  • @rishabhrana3773
    @rishabhrana3773 2 ปีที่แล้ว

    Your videos never disappoint

  • @emanuelepicariello
    @emanuelepicariello 2 ปีที่แล้ว

    Great and useful video, thanks!

  • @justkiddieng6317
    @justkiddieng6317 2 ปีที่แล้ว +9

    More web and network penetration videos bro. That would be great.

  • @RafaelLima-ox9ul
    @RafaelLima-ox9ul 2 ปีที่แล้ว

    Awesome! Thanks for sharing!

  • @ghostesprit4403
    @ghostesprit4403 2 ปีที่แล้ว +1

    Education is the key!

  • @CloudSecWithRay
    @CloudSecWithRay 2 ปีที่แล้ว

    Great content as always

  • @localhost4356
    @localhost4356 2 ปีที่แล้ว

    Amazing & Excellent

  • @MrHT1993
    @MrHT1993 2 ปีที่แล้ว +1

    Thank you so much for this great content. Can you please number and compile your latest web app pentesting videos into a playlist? They will be much easier to follow that way. Thank you very much.

  • @pakcyberteam
    @pakcyberteam 2 ปีที่แล้ว

    شکریہ

  • @venomx2131
    @venomx2131 2 ปีที่แล้ว

    Superb bro

  • @geniusesml3700
    @geniusesml3700 2 ปีที่แล้ว +2

    Thank you senpai

  • @cannonkain375
    @cannonkain375 ปีที่แล้ว

    this was really useful.

  • @AgentProtonDecay
    @AgentProtonDecay 2 ปีที่แล้ว

    Thank you for sharing

  • @hackeranonymous9565
    @hackeranonymous9565 2 ปีที่แล้ว +1

    Love you 💞😘 bro 🤗

  • @hacking9077
    @hacking9077 2 ปีที่แล้ว

    Great. Can you please do a video about pentesting report writing?

  • @vinay5265
    @vinay5265 2 ปีที่แล้ว +2

    Pls make a videos on powershell and bash script

  • @itsme7570
    @itsme7570 2 ปีที่แล้ว

    Cool extension

  • @TheConstantLearnerGuy
    @TheConstantLearnerGuy 2 ปีที่แล้ว +3

    Is there any well structured and complete Web App Pentesting course of yours ? Paid will do the work too.

  • @mn.raunaq
    @mn.raunaq 2 ปีที่แล้ว

    thank you!

  • @modmah7191
    @modmah7191 2 ปีที่แล้ว

    Thanks!

  • @unknownanonymous4735
    @unknownanonymous4735 2 ปีที่แล้ว

    hi thanksss please make such same tutorial for SOP

  • @phinehasantwi9615
    @phinehasantwi9615 2 ปีที่แล้ว

    Thanks alot

  • @VishalRadan
    @VishalRadan 2 ปีที่แล้ว

    is it comes under xss bug??
    when we perform in live site and get cookies of the session

  • @saumoncooking414
    @saumoncooking414 2 ปีที่แล้ว

    yes !

  • @pakcyberteam
    @pakcyberteam 2 ปีที่แล้ว

    Which screen recorder do you use..

  • @parisbrian564
    @parisbrian564 2 ปีที่แล้ว

    Cool.....
    Alexis

  • @oleglivcha5041
    @oleglivcha5041 ปีที่แล้ว

    Actually the browser itself is concerned with cookie expiration date,if it has expired by the time request is made ,browser will delete it silently and make a request without adding cookie to it.I’m not sure there is a practice by which server will validate the cookie for its expiration date,correct me if I wrong.Thanks

  • @alwan7777
    @alwan7777 2 ปีที่แล้ว

    please also discuss how we know whether a hash is md5 or base64 62 and others😁

    • @itsme7570
      @itsme7570 2 ปีที่แล้ว +3

      It usually says it. Or you'll know after you crack it with for example crackstation

    • @DHIRAL2908
      @DHIRAL2908 2 ปีที่แล้ว +1

      hash-identifier is pretty useful too!

    • @alwan7777
      @alwan7777 2 ปีที่แล้ว

      @Voldemort thks bro😁🙏

  • @sunnyyt4082
    @sunnyyt4082 ปีที่แล้ว

    sir at 12:20 before the server had sent a response , when we sent a get request a cookie had generated , so who generated cookie browser or server?

    • @pawankunwar9715
      @pawankunwar9715 ปีที่แล้ว

      its already generated by the server when you visit that website(in this case but the cookie are same because it is vulnerable website)and when we login through the website, it is also again generate with session cookie.

  • @konfushon
    @konfushon 2 ปีที่แล้ว +1

    Didn't know this dude is from Nairobi Kenya

  • @suporte99py99
    @suporte99py99 2 ปีที่แล้ว

    Anyone use the BURP SUITE HERE? LEAVE DISCORD.

  • @ryanlee5435
    @ryanlee5435 2 ปีที่แล้ว +2

    1빠

  • @mahamaatir7755
    @mahamaatir7755 2 ปีที่แล้ว +1

    Bitcoin should be next topic

  • @Jesse_Johnson
    @Jesse_Johnson 4 หลายเดือนก่อน

    Dude he stop making content?!

  • @hackeranonymous9565
    @hackeranonymous9565 2 ปีที่แล้ว

    Hacker

  • @mahamaatir7755
    @mahamaatir7755 2 ปีที่แล้ว

    Hacking bitcoin videoo

  • @Nkworldff
    @Nkworldff ปีที่แล้ว

    Any one tell how to get access from old cookies in facebook anyone can help i can pay for it any one can help🥹