4 тысяч подписчиков
68 видео
PentesterLab Recon Challanges From 16-20 | CTF |
Create your Own Hash Cracking Tool Using Python | With Slides | Explained
How to install gau tool and use it | Fetch URLS | Github
Bypass JWT Authentication By Bruteforcing Secret Key | PortSwigger |
Create your Own Port Scanning Tool Using Python | With Slides | Explained
Server-Side Parameter Pollution in REST APIs
Create Your Own Subdomain Enumeration Tool Using Python | With Slides | Explained
OWASP API Top 10 - Broken Authentication
Installation and Usage of Subjack | Subdomain Takeover | Kali Linux Tool
Exploiting Command Injection in GraphQL | DVGA |
JWT authentication bypass via 'X-HTTP-Method-Override' Header
LLM API Hacking | Indirect Prompt Injection in LLM APIs | PART 4
Accessing Private GraphQL Fields
Exploiting Stored XSS in GraphQL | DVGA |
How To Exploit SSRF To Fetch AWS Credentials
Loose Locks: A Podcast with _smile_hacker_ 🎙 : Snake Bytes Ep. 2
Performing CSRF exploits over GraphQL
LLM API Hacking | Excessive Agency | PART 2
Exploiting SQL Injection in API Endpoint | API Hacking | crAPI
How to Discover API Subdomains? | Subdomain Enumeration | API Hacking
How to Install crAPI in Kali Linux | OWASP | API Testing |
How To Perform DOS Attack in GraphQL | Circular Relationship | Prevention
IDOR In Shopify GraphQL API | Report Explained
HTTP Parameter Pollution VS Mass Assignment
How to Learn Web & API Hacking in 2026 (Complete Roadmap)
How Hackers Exploit API Endpoints Using Documentation?
I Tested an AI Hacker Called Shannon (Unexpected!)
Authentication Bypass Via JWK Header Injection | JWT Hacking
Authentication Bypass Via JKU Header Injection | JWT Hacking
Phases of Penetration Testing | WebApp Pentest | Privilege Escalation
Web Cache Deception Made Simple – What You Need to Know!
Mastering OAuth 2.0 Flows: Complete Guide + Security Testing Tips (Okta OAuth Playground)
Exploiting Mass Assignment Vulnerability in API | PortSwigger
Broken Object Level Authorization | Excessive Data Exposure | crAPI
How Hackers Bypass Paywalls? (Real Techniques)
Bypassing 2FA with this weird trick!
How Bug Hunters Map GraphQL APIs? | PART 1
The Most Overlooked Bug in Web Apps: HTTP Request Smuggling (Deep Dive)
Exploring Server-Side Parameter Pollution: Real Case Scenario, Parameter Precedence, and More!
Accidental Exposure of Private GraphQL Fields
How Can Fuzzing Help You Find Hidden API Endpoints?
Stop Ignoring These Business Logic Issues!
Why Bug Bounty Hunters Still Check xmlrpc.php in 2025?
How I Found Valid JavaScript Bugs? (Storytime)
How to Exploit Uncommon HTTP Headers for Hacking & Bug Bounties?
TryHackMe: Wireshark Basics | Part 1 |
Automating Web Cache Deception for Bug Bounties!
Exploiting Exact-match Cache Rules for Web Cache Deception | PortSwigger Lab | Explained
Top 5 API Vulnerabilities That Pay in Bug Bounties
Discovering API and Analyzing Endpoints Using Postman and Browser | crAPI |
DOM XSS from just Copy Paste 😳?