change the content of any website! HTTP Parameter Pollution Explained

preview_player
Показать описание
// Membership //

// Courses //

// Books //

// Social Links //

// Disclaimer //
Hacking without permission is illegal. This channel is strictly educational for learning about cyber-security in the areas of ethical hacking and penetration testing so that we can protect ourselves against the real hackers.
Рекомендации по теме
Комментарии
Автор

And this is why you validate every parameter and all parts of app state both on the frontend and backend. Also it's best to obfuscate sensitive parameters. And finally, please stop using auto-incrementing IDs 🙄

JohnWalz
Автор

What's your favourite security tool?

LoiLiangYang
Автор

man i am learning a lot from youi, KEEP IT UP

asmalorgarithm
Автор

Thanks, thanks, and again, for all the content you teach us

rom_
Автор

nmap, sql map, burpt suit, metasploit, uhh there are so many tools and script I like ...

hackersdom
Автор

10 year old me using inspect tool: hahaha im hacking this website :D

itskeith
Автор

I have a question: Are your setting on burp suite foxy proxy and internet adjustments/settings neutral? I mean have you touched anything so you burp suite can intercept websites alright? Im askinng because my intercepting isnt working although foxy proxy and burp suite are synchronised and set well...

sashadowgames
Автор

👌🏼👌🏼👌🏼Explained so well that i understood 👌🏼👌🏼👌🏼
- ("hello world")

thwahirmahammed
Автор

Very helpful for me.
Love 💕 from Pakistan.

its_code
Автор

Great video. When I first got into web hacking I realized you could Inspect Element and change the value of <select> elements and change countries and dates to arbitrary data. Didn't know this had a name and could be taken to the next level with burp.

reijin
Автор

Heheh😂 i liked that warning ⚠️ . I will catch you GAME OVER 😂😂😂

crazymemes
Автор

Was it really necessary to change the request from GET to POST? It seems the form is using get parameters.

rubbonn
Автор

I think this is a great way to deal with scammers, phishing web sites. Can show us how to do it please, Mr. Loi Liang Yang

isurusandakelum
Автор

1:06 That threat scares the f* out of script kiddies

rodricbr
Автор

That part where Loi asked viewers not to try hacking his site because he’d find them was gold 😂

ktnD
Автор

the best way is post the backdoor then gain access to the web server then change the content on there using nano editor or just install nano on the server.

sdasdsadsa
Автор

are changes done on the website or changes are just done on offline web page of website?

Ankitkumar-kkrm
Автор

We can use this to get the database of any website sign up page by changing it to GET?

cybershadowtech
Автор

Well so im quite new to this and just trying to learn. So do you have a template for your website or something that you could release? ive been spending some time trying to code my own website so i could run these tests but it will take a while especially as im learning html from the basics to make this

JohnDoe-ofig
Автор

Make more video, s like this about burp suite

alexvandermeer