11 тысяч подписчиков
216 видео
Crushing Client-Side on Any Scope with MatanBer (Ep. 81)
Smuggling sensitive data via CSS injection and sequential import chaining.
The State of CSS Injection - Leaking Text Nodes & HTML Attributes (Ep. 79)
Client-side Quirks and Browser Hacks (Ep. 26)
Corben Leo: Legendary DoD Hacker (Ep. 21)
The Art of Web Architectures (Ep. 39)
Bug Bounty Ethics & CT Exclusive Bug Reports (Ep. 36)
Mobile Hacking Maestro Sergey Toshin (Ep. 38)
UNBELIEVABLE OS Command Injection technique!? 😱
5k Clickjacking, Encryption Oracles, and Cursor for PoCs (Ep. 90)
DISGUSTINGLY AMAZING vuln leaves me (almost) speechless!
URL Parsing & Auth Bypass Magic (Ep. 44)
Frontend Language Oddities (Ep. 62)
POCs failing? Here’s the problem AND the fix.
SAML XPath Confusion, Chinese DNS Poisoning, and AI Powered 403 Bypasser (Ep. 92)
How long does it take to find a bug in a new scope?
How does Justin STAY MOTIVATED? Here's how.
Douglas Day: The King of Collaboration (Ep. 35)
Mobile Hacking: Dynamic Analysis using Frida (Ep. 14)
Single Page Application Hacking Playbook (Ep 114)
Client-side Advanced Topics w/ Rhynorater (Ep. 151)
Be careful what you sell on eBay!
The Hacker's Toolkit (Ep. 16)
Want to learn hardware hacking? Try this.
PHP stripslashes() DOESN'T strip slashes!?
RELATIONSHIP HACKS for bug bounty hunters.
How 25 characters can get you a SHELL!
STOP overriding debug functions. Use this DevTools secret instead.
James Kettle: Pwning in Prod & How to do Web Security Research (Ep. 139)
$600k in 6 months - BruteCat's Google Hacking Story (Ep. 178)
Hacking the Pod - Google Docs 0-day & React CreateElement Exploits with Nick Copi (7urb0) (Ep. 141)
Have you heard of the cookie value-to-key trick!?
Practical Applications of DEFCON 32 Web Research (Ep. 85)
Using x-request-id to access ANY account via Header Injection!
A Chat with Dr. Bouman - Life as a Hacker and a Doctor (Ep.93)
How to dump /etc/passwd with "%3F" 🤯
This vuln keeps Justin awake at night!
My struggle with LHE burnout!
Why is note taking SO BAD!?
Why note taking is good for your health!
Exploiting X-REQUEST-ID to write PHP in /var/www!
Cloudflare Zero-days & Mail Unsubscribing for XSS (Ep.160)
Mariah embarrassing Justin about the first time he met Frans Rosén 😂
PortSwigger's new release is a BANGER!
I ignored SSRF for too long...
When IoT hacking meets Indiana Jones!
Plain text session tokens... ON FACEBOOK!?
Is THIS the most underrated skill in bug bounty?
Zero to LHE in 9 Months (feat gr3pme) (Ep. 91)
Is Caido Your Next HTTP Proxy? (Ep. 43)