Information Disclosure 3 | Source Code Disclosure via Backup Files #portswigger

8 days ago
3

Did we help you today? Show us your love here:
https://buymeacoffee.com/TORHAT
Paytm: https://tinyurl.com/TORHAT

This video is for Educational purposes only.
https://portswigger.net/web-security/information-disclosure
https://portswigger.net/web-security/information-disclosure/exploiting/lab-infoleak-via-backup-files

Steps to solve:
1. Find Home page / in proxy
2. Right click on home page , Engagement tools, Discover Content.
3. Click on session is not running, Click yes.
4. Go to site map and open the .bak file.

SSH Tunneling:
ssh -L 5555:localhost:5432 [email protected] -N

Connect postgres database:
psql -h example.com -U postgres -d postgres -p 5432

For Learners:
https://hmcyberacademy.com/learners.html
For Companies:
https://hmcyberacademy.com/companies.html

Socials:
Linkedin: https://www.linkedin.com/company/hmcyberacademy
Twitter: https://twitter.com/hmcyberacademy
Telegram Group: https://t.me/+a9nwT9mdgeJhMDA1
Instagram: https://www.instagram.com/hmcyberacademy/
Discord: https://discord.com/invite/caMKZRBjty
Rumble: https://rumble.com/c/hmcyberacademy
Email: [email protected]

#hmcyberacademy #portswigger #Cybersecurity #EthicalHacking #HackingLab #SecurityChallenge #CTF (Capture The Flag) #Infosec #WebSecurity #CyberChallenge #BugBounty #CaptureTheFlag #HackingChallenge #HackMe #SecurityTraining #password #informationDisclosure #DebugPage #bugbounty #bugbountyhunter #bugbountytips #bugbounty #bugbountyhunter #bugbountytips

Loading comments...