Hacking Electron Applications

preview_player
Показать описание
#WebSecurity #ElectronJs #RCE

A video on the finding Remote Code Execution (RCE) on Electron Js Applications

🎵 Track: Warriyo - Mortals (feat. Laura Brehm)
Рекомендации по теме
Комментарии
Автор

This video is kinda old, a lot have changed since then. Many things don't apply to today's reality so I'll be doing an updated video in the near future, stay tuned.

Starting from Electron 5.0+, `nodeIntegration` is disabled by default.

PwnFunction
Автор

Nice!!! First video I see from you. And your drawing style is already better than mine :P
Good job :)

LiveOverflow
Автор

This is epic
After watching your newer videos I decided to watch some of these and I was not disappointed.
Amazing that you were still this good at making videos 3 years ago


Correction: 2 yrs I can’t count

lennystudios.
Автор

Whoa this is quality content! Thank you so much!!!

sqUamoNe
Автор

Coming from liveoverflow's video, that drawing is awesome <3

lilspelunker
Автор

dude... you blow my mind. this is awesome....

Bfb
Автор

Protip: most Electron applications comes with default devtools shortcut

basix
Автор

I love this channel. The brain dumps are top notch.

vltraheaven
Автор

Great video! A quick note in case it helps, there is a bumping sound on the left channel of the audio on your videos and is more noticeable wearing headphones. Depending on the source of the sound, a pop filter or shock absorbing mount for your mic would make your video as pleasing to listen to as it is to watch. 😊

NekoOverflow
Автор

Can you share the electron app and the raw payload so all of us could try the step by step practically ?

Thanks for the good video (Y)

abdilahrf
Автор

Soo much to learn from you, Hats off Dude

premagrawal
Автор

this is amaaazing do more please . also doing course on youtube would be cool

Sypacks
Автор

Crazy.... You guyz are awesome.. loved it..
❤️ From 🇮🇳

sakyb
Автор

Your videos are very good, keep it like that!

Mooshroom
Автор

Great video!!! Thanks for sharing. +1 like and subscriber

roguesecurity
Автор

Nice i learnt something todayy








Had to happen some day.

codechapter
Автор

"It was basically an API?" sure looks a lot like OpenID Connect to mee :D

dpsi
Автор

Sir please make more vedios like this 🙏🙏

sulochanakharat
Автор

Name a best alternative secure like javafx which I am aware. Which I also aware decompiled easy or use Obfuscate. I need a secure non reverse engineerable application. Can anybody give good advice

abinthomas
Автор

I knew this was gonna be discord from the title

Dank