Race Conditions - The Bug Hunters Guide

Ғылым және технология

Let's learn about race conditions and how to hunt for them.
Please leave a Like, subscribe, and let me know in the comments what you think about the video.
Happy Hacking!
Resources:
- portswigger.net/research/smas...
Follow me on:
✖️ - BugHunterLabs
Chapters:
00:00 - Intro
01:20 - Race Conditions
01:45 - Limit Overrun
02:16 - Race Condition: Gift Card
04:12 - Multiple Requests Send in Parallel
04:38 - Last-Byte Sync
05:28 - Single Packet Attack
06:00 - Benchmark
06:45 - State-Machines
07:00 - State Machine: Make Payment
07:45 - Race Conditions with Burp
08:27 - Methodology
09:10 - Example: Confirmation Email
11:07 - Outro

Пікірлер: 18

  • @bughunterlabs
    @bughunterlabs2 ай бұрын

    Hello Hunter! Thanks for watching. Let me know in the comments about your experience with Race Conditions.

  • @codesplit7175
    @codesplit7175Ай бұрын

    This is the best KZread Channel

  • @GabrielGray_2024
    @GabrielGray_2024Ай бұрын

    One of the best new tutorial series out there. Thanks!

  • @bughunterlabs

    @bughunterlabs

    Ай бұрын

    Glad you think so! :)

  • @thechannelofmine
    @thechannelofmineАй бұрын

    Such a high quality content, keep it up!

  • @breakoutgaffe4027
    @breakoutgaffe402719 күн бұрын

    Awesome editing and explanations on this channel, thanks man! Can you please do one about chaining simple attacks like CSRF, open redirects, reflected xss etc to make them higher impact?

  • @rainerwahnsinn3265
    @rainerwahnsinn3265Ай бұрын

    Great explanation! And I love the wordplay at the endcard :)

  • @bughunterlabs

    @bughunterlabs

    Ай бұрын

    Haha. Thank you.

  • @firzainsanudzaky3763
    @firzainsanudzaky3763Ай бұрын

    ssrf next man, this is great

  • @bughunterlabs

    @bughunterlabs

    Ай бұрын

    SSRF is coming soon! :)

  • @ileanabarrionuevo94
    @ileanabarrionuevo942 ай бұрын

    Very well explained!

  • @bughunterlabs

    @bughunterlabs

    Ай бұрын

    Glad it was helpful!

  • @l00pzwastaken
    @l00pzwastaken2 ай бұрын

    Explanation was very good 😊 learnt something Today

  • @bughunterlabs

    @bughunterlabs

    2 ай бұрын

    Glad to hear that!

  • @l00pzwastaken

    @l00pzwastaken

    2 ай бұрын

    @@bughunterlabs can you please make next video on SQL injection it's types and deep dive how it works in backend and and it's types

  • @bughunterlabs

    @bughunterlabs

    2 ай бұрын

    @@l00pzwastaken A video about SQL injection is in the pipeline. It might not be the next one, but it is certainly coming!

  • @spider19728
    @spider19728Ай бұрын

    Like?? I SUBSCRIBED!!!!

  • @bughunterlabs

    @bughunterlabs

    Ай бұрын

    Thank you :)