1 00:00:00,256 --> 00:00:06,400 And for this photo 2 00:00:10,496 --> 00:00:16,640 So here 3 00:00:16,896 --> 00:00:23,040 So this is the example of lipstick car object car place where it has a two properties model and 4 00:00:23,296 --> 00:00:29,440 Object it just converted this object of this car into a 5 00:00:29,696 --> 00:00:35,840 No plans for this information 6 00:00:36,096 --> 00:00:42,240 B distant inserting bad character which is greater 7 00:00:42,496 --> 00:00:48,640 Developer transfer disinformation order Network that might be a possibility that the receiver will not receive the complete data 8 00:00:48,896 --> 00:00:55,040 Wu's the encoding mechanism over here so that 9 00:00:55,296 --> 00:01:01,184 64 x 2,000 attachment this information about the Network receiver body 10 00:01:01,440 --> 00:01:07,584 Convert into a binary holiday 6400 the magic b 11 00:01:07,840 --> 00:01:13,984 4 hex the magic b is aceds ss005 and for basics 12 00:01:14,240 --> 00:01:20,384 CR2032 sparked the violence has object using the content iPad 13 00:01:20,640 --> 00:01:26,784 Best Anti Federalist application / X Java serialize object 14 00:01:27,040 --> 00:01:33,184 The moment you identify that uses the Java serialize object 15 00:01:33,440 --> 00:01:39,584 Utility 16 00:01:39,840 --> 00:01:45,984 The owner of this is basically created 17 00:01:46,240 --> 00:01:52,384 Then bunch of researcher came together and provided support within this 18 00:01:52,640 --> 00:01:58,784 Now let me explain this one simple example how it works 19 00:01:59,040 --> 00:02:03,904 So I bought that let me open up my calendar 20 00:02:04,160 --> 00:02:07,488 And let me 21 00:02:08,768 --> 00:02:12,096 Music 22 00:02:31,296 --> 00:02:37,440 Binary 23 00:02:39,488 --> 00:02:44,608 Isn't that I'm just getting this a piece of cord 24 00:02:45,376 --> 00:02:51,520 I just created one object and that is training which has three variables 25 00:02:51,776 --> 00:02:57,920 Entice pictures one constructed only 26 00:02:58,176 --> 00:03:04,320 Then simply passed information it will assign this information to DVD 27 00:03:04,576 --> 00:03:10,720 9 + 28 00:03:10,976 --> 00:03:17,120 Deserialize Commander argument 29 00:03:17,376 --> 00:03:23,520 Also I have shown you that 30 00:03:23,776 --> 00:03:29,920 In the binary format 31 00:03:37,344 --> 00:03:43,488 In the file so let me show you the info. 32 00:03:43,744 --> 00:03:45,792 Calling function 33 00:03:46,048 --> 00:03:52,192 So isn't that what I've done is created when object of class training 34 00:03:52,704 --> 00:03:58,848 Then created one file that I'm just stirring the city lies representation 35 00:03:59,104 --> 00:04:01,920 Particular object 36 00:04:03,712 --> 00:04:09,856 Presentation of the object 37 00:04:10,112 --> 00:04:14,208 Trini so let me run this 38 00:04:20,095 --> 00:04:24,447 Pilot 39 00:04:28,543 --> 00:04:34,687 Do you spy store within the Bynum 40 00:04:34,943 --> 00:04:40,319 That is 5 41 00:04:40,831 --> 00:04:46,975 It's contained the binary data like its object of training than some 42 00:04:47,231 --> 00:04:53,375 Stream which has value song 43 00:04:55,423 --> 00:05:01,567 This is not a table over the network 44 00:05:01,823 --> 00:05:07,967 Bad bad bad 45 00:05:18,719 --> 00:05:24,351 Received information from Steam a b 46 00:05:25,119 --> 00:05:31,263 All the file and from that it will convert that binary data into an object 47 00:05:37,919 --> 00:05:44,063 Object back and then able to 48 00:05:44,319 --> 00:05:50,207 Each and every variable that is 49 00:05:54,815 --> 00:06:00,959 Yes it's able to digitalize the data and its able to obtain information from 50 00:06:07,615 --> 00:06:13,759 I want to do serialization and I want to convert 51 00:06:14,015 --> 00:06:20,159 And by 52 00:06:20,415 --> 00:06:26,559 And that is our 20 53 00:06:26,815 --> 00:06:32,959 Then you can simply use the bicycle. 54 00:06:33,215 --> 00:06:38,591 Let's postpone the discussion as to be 64 55 00:06:38,847 --> 00:06:42,687 And here are two past information 56 00:06:48,063 --> 00:06:54,207 It's able to disregard ICBC sukhothai swelling able to obtain information 57 00:06:54,463 --> 00:07:00,351 This is how the binary situation ended insulation board 58 00:07:01,631 --> 00:07:07,775 125. Then you can simply use devices serial utility 200 59 00:07:14,431 --> 00:07:20,575 Identified inject a payload into a civilized Rita to mr. Send 60 00:07:20,831 --> 00:07:26,975 List when external post get from the Sun 61 00:07:33,631 --> 00:07:39,775 Stupid horse user X. 62 00:07:40,031 --> 00:07:41,823 Around this 63 00:07:42,591 --> 00:07:46,687 So let me show you the insertion point first 64 00:07:46,943 --> 00:07:50,015 Let me check out connected to the yes 65 00:07:50,271 --> 00:07:55,135 Restart the Bob suite and Roswell 66 00:08:10,751 --> 00:08:13,567 You have to go to this microblog site 67 00:08:17,919 --> 00:08:23,807 This particular applications login 68 00:08:24,575 --> 00:08:29,183 So anyone has any question in this concept 69 00:08:33,535 --> 00:08:39,679 Okay so what time you going to play with this exercise then I'll give you a time 70 00:08:39,935 --> 00:08:46,079 Again I'll give you walked around this internet then I guess I'll give her time to complete 71 00:08:56,063 --> 00:09:00,927 If you have any question just push your password internet support 72 00:09:32,671 --> 00:09:34,719 Recording in progress 73 00:11:32,479 --> 00:11:38,623 Mark thing I need to mention is that devices available 74 00:11:41,183 --> 00:11:43,743 So within the tools 75 00:11:43,999 --> 00:11:50,143 It is a wise decision. He's available and the sentence for that is Chava if injured by Cecilia 76 00:11:52,703 --> 00:11:58,847 So you can identify all the gadgets that is available 77 00:12:14,719 --> 00:12:20,863 And then have to provide the commands that's it for you 78 00:23:48,992 --> 00:23:51,040 So 79 00:23:51,552 --> 00:23:57,696 Okay so okay means 80 00:23:57,952 --> 00:24:04,096 Let me give you a I'll do we upload search 81 00:24:04,352 --> 00:24:10,496 So the first thing is identification 82 00:24:10,752 --> 00:24:14,336 The doll by this is Elijah. 83 00:24:27,392 --> 00:24:32,000 Ask what is something default 84 00:24:32,768 --> 00:24:34,560 Intubate 85 00:24:35,840 --> 00:24:39,424 Just created my account now 86 00:24:39,680 --> 00:24:43,776 Play this is my password 87 00:24:45,568 --> 00:24:51,712 Click on this remember me cookie 88 00:24:55,552 --> 00:24:58,880 First Response 89 00:25:00,672 --> 00:25:06,816 No 90 00:25:08,608 --> 00:25:14,752 And in the response remember me cookie 91 00:25:15,008 --> 00:25:21,152 Santa Magic 92 00:25:21,408 --> 00:25:25,248 How to be explored this 93 00:25:27,296 --> 00:25:33,440 Call Derek let Mission District mystery picture first 94 00:25:33,696 --> 00:25:36,000 Cookie 95 00:25:37,024 --> 00:25:43,168 No the next English to Telugu translation and for that we are using devices 96 00:25:44,192 --> 00:25:48,288 No 97 00:25:49,568 --> 00:25:53,920 All of yours question all of you might have gotten that big banner do we have to use 98 00:25:54,176 --> 00:26:00,320 So when you identify this then you could you should always strive deep common collection first because 99 00:26:00,576 --> 00:26:06,720 The common collection libraries kind of basic Library which contains all the basic level classes like 100 00:26:06,976 --> 00:26:13,120 At least it can be used by most of the application 101 00:26:13,376 --> 00:26:19,520 The department collection first game 102 00:26:20,288 --> 00:26:26,432 Create the payload based on response based on the other message that is available 103 00:26:26,688 --> 00:26:32,832 Isabella queen shed and 104 00:26:33,088 --> 00:26:39,232 And it's on the common collection 105 00:26:40,000 --> 00:26:46,144 There are six different different gadgets available 106 00:26:46,400 --> 00:26:48,192 Now 107 00:26:48,704 --> 00:26:54,848 This is based on creation of diseases create created based on the different version of the color combination Library 108 00:26:55,104 --> 00:27:01,248 So you see the latest libraries open 04 election 109 00:27:01,504 --> 00:27:07,136 Common collection for latest 110 00:27:11,744 --> 00:27:17,888 So let's say I want to jump at My Pain 111 00:27:18,144 --> 00:27:24,288 Kitchen food and I want to First making out-of-band question. 112 00:27:24,544 --> 00:27:29,152 Using this tennis to compunction it's basically resolve this particular 113 00:27:29,408 --> 00:27:31,456 It's a binary 114 00:27:31,968 --> 00:27:37,600 User 99. Website 115 00:27:37,856 --> 00:27:39,136 Dot-com 116 00:27:39,648 --> 00:27:45,792 No is a mansion. 117 00:27:46,048 --> 00:27:52,192 Linda this election process 118 00:27:52,448 --> 00:27:58,592 Creative object compilation Times article basically the stream of the input that is provided by the 119 00:27:58,848 --> 00:28:04,992 Do you envision this information whatever information is that if we create the instance of the object 120 00:28:05,248 --> 00:28:11,392 Call Matson so hear what we're doing we are using 121 00:28:11,648 --> 00:28:17,792 A stickerman execution capability on the server and you see 122 00:28:18,048 --> 00:28:20,096 Transmitted over here 123 00:28:20,352 --> 00:28:26,496 Creating the process using the Java. Lang. 124 00:28:33,152 --> 00:28:39,296 No we cannot transmit over the network 125 00:28:39,552 --> 00:28:43,904 So let's convert this into base64 126 00:28:44,416 --> 00:28:46,208 Now 127 00:28:46,464 --> 00:28:48,512 Look at this 128 00:28:49,280 --> 00:28:50,560 Happy copy this 129 00:28:51,840 --> 00:28:57,984 Desmond wish you were here so when you copy and paste 130 00:28:58,240 --> 00:29:04,384 Available Line 1 line 2 line 94 in here 131 00:29:04,640 --> 00:29:08,992 Type it into a single line supposed to convert this into 132 00:29:09,248 --> 00:29:15,392 Single a note in for that let me delete all the newline character 133 00:29:15,648 --> 00:29:17,440 All the new line 134 00:29:24,096 --> 00:29:26,912 So let me copy this 135 00:29:32,544 --> 00:29:35,104 Existing data 136 00:29:35,616 --> 00:29:41,760 Monday for sending District Welfare to start Pacific time 137 00:29:42,016 --> 00:29:46,880 I'm using this tcpdump listener 138 00:29:49,184 --> 00:29:53,792 Let me send. 139 00:30:10,944 --> 00:30:14,784 Multiple windows 140 00:30:16,832 --> 00:30:20,672 Okay let me see 141 00:30:33,728 --> 00:30:36,544 Give me a price 142 00:30:39,872 --> 00:30:42,944 Close today 143 00:31:23,392 --> 00:31:26,976 Vivian Porter 144 00:31:27,744 --> 00:31:33,888 Openvpn config 145 00:31:34,144 --> 00:31:36,704 99 146 00:31:41,312 --> 00:31:44,128 Chucky 147 00:31:47,456 --> 00:31:53,600 Openvpn hack 148 00:31:53,856 --> 00:31:56,160 Yusuf 99 149 00:31:56,416 --> 00:31:59,744 Reject password 150 00:32:05,632 --> 00:32:10,496 Schenectady 151 00:32:29,184 --> 00:32:35,328 Cancel request 152 00:32:35,584 --> 00:32:41,728 Pikachu 153 00:32:41,984 --> 00:32:47,360 And then go to change it 154 00:32:48,384 --> 00:32:54,528 Okay. I'm just going to my tools did airplanes by b.o.b. 155 00:32:57,344 --> 00:33:01,696 And I want to use the common collection food 156 00:33:01,952 --> 00:33:07,072 This is the latest library of Tacoma collection Dutch oven 157 00:33:10,656 --> 00:33:16,800 And the command that I want to execute and the dis 158 00:33:17,056 --> 00:33:18,080 Noah. 159 00:33:19,104 --> 00:33:24,992 User 99.com 160 00:33:25,504 --> 00:33:30,112 Convert this into a base 64 and remove 161 00:33:30,880 --> 00:33:33,440 All the new lines zombie 162 00:33:48,544 --> 00:33:51,872 Before sending data to the server 163 00:33:53,408 --> 00:33:58,272 Start recipe. 164 00:34:13,120 --> 00:34:19,264 Siesta 165 00:34:19,520 --> 00:34:25,664 Election update 166 00:34:25,920 --> 00:34:27,200 Amsterdam 167 00:34:27,968 --> 00:34:30,016 Eustis 168 00:34:30,272 --> 00:34:36,416 Instead of running this particular come on 169 00:34:37,952 --> 00:34:44,096 Call Dad I'm using Bash 170 00:34:45,376 --> 00:34:51,520 And that's a horse is 192 168 171 00:34:51,776 --> 00:34:56,896 0.99 and Deport is Lexi 4848 172 00:35:02,272 --> 00:35:07,904 Openness information 173 00:35:08,928 --> 00:35:15,072 I'll be sending this pillow to start a listener-supported 174 00:35:15,328 --> 00:35:21,472 Kali machine 175 00:35:21,728 --> 00:35:24,800 Which population is 4848 176 00:35:25,056 --> 00:35:31,200 Monica sent this request Uber server you see song 177 00:35:31,456 --> 00:35:37,600 192 168 211 178 00:35:37,856 --> 00:35:44,000 System information like nickname 179 00:35:44,256 --> 00:35:48,352 Then let's see 180 00:35:49,632 --> 00:35:55,776 Who am I running on the Tomcat 18 181 00:35:56,032 --> 00:36:00,896 Then we can also expect content of internal files like it is a possibility 182 00:36:02,688 --> 00:36:08,832 So this is how we can explain binary City Lights Theater so the only thing in Port 183 00:36:09,088 --> 00:36:15,232 Restart hospital to Sparta benefit City Lights Theater Danville to use the pillow 184 00:36:15,488 --> 00:36:21,632 Steady-state Arlington 185 00:36:21,888 --> 00:36:28,032 No you open 186 00:36:28,288 --> 00:36:34,432 All is ask the question that we have identify this object 187 00:36:34,688 --> 00:36:40,832 Straight up 188 00:36:41,088 --> 00:36:47,232 Application Library also needs to be wallpaper 189 00:36:47,488 --> 00:36:53,632 Any other comic collection Library 190 00:37:00,288 --> 00:37:06,432 Black book spend Easter we should always try to first because it has 191 00:37:06,688 --> 00:37:12,832 Basic classes that's usually all the application is used like 192 00:37:13,088 --> 00:37:15,648 Please map 193 00:37:16,416 --> 00:37:22,560 Suck that's about. 194 00:37:29,984 --> 00:37:35,616 Give you 10 more minutes to complete this exercise and will move to the next one 195 00:37:40,480 --> 00:37:46,624 If you have any question please post your question on the Bible support 196 00:37:46,880 --> 00:37:48,160 Sebastian 197 00:38:09,664 --> 00:38:15,808 Passwords of the day 3 198 00:38:16,064 --> 00:38:22,208 Let me upload this Taps on them 199 00:38:22,464 --> 00:38:25,536 102 minutes 200 00:42:35,647 --> 00:42:39,231 Once you complete the exercise please update the polling channel channel 201 00:47:37,471 --> 00:47:43,103 It's only six people has completed this one so gorgeous and 50 minutes 202 00:47:46,943 --> 00:47:53,087 Please update the ball 12 completed exercise or if you have any question or any good 203 00:47:53,343 --> 00:47:59,487 But it stops that is mentioned in the walk-through please 204 00:52:46,719 --> 00:52:52,863 You can come to this 205 00:52:57,983 --> 00:53:01,055 Know something what happened 206 00:53:01,311 --> 00:53:07,455 Even if you are donating your payload is in devices using dependency the last data 207 00:53:07,711 --> 00:53:13,855 Anyone using devices 208 00:53:14,111 --> 00:53:16,671 Message 209 00:53:16,927 --> 00:53:23,071 The guys at Rhino security Labs all credit goes to them 210 00:53:23,327 --> 00:53:29,471 All day approaches particle a message 211 00:53:29,727 --> 00:53:35,871 Modify devices to create a customized pillows so what happened 212 00:53:36,127 --> 00:53:42,271 What day were observed that the application 213 00:53:42,527 --> 00:53:48,671 Sleepy satisfying the organization Apache. Commons. 214 00:53:48,927 --> 00:53:55,071 Carbon competitor is incompatible 215 00:53:55,327 --> 00:54:01,471 Text and local classical version Gladys 216 00:54:01,727 --> 00:54:02,751 Memes 217 00:54:03,007 --> 00:54:09,151 Filipino dating is mismatching 218 00:54:09,407 --> 00:54:15,551 Boot be devices little job and back-end application liability is using. 219 00:54:17,343 --> 00:54:21,439 I'll be specific class and there has been competitor 220 00:54:21,695 --> 00:54:27,839 What we can do in this so that I know the guys are 221 00:54:28,095 --> 00:54:34,239 Titan security lab while he'll had just published a right around that bad 222 00:54:34,495 --> 00:54:38,847 Doing the blind contestant and they just provide Haugen 223 00:54:39,103 --> 00:54:45,247 What day one letter script 224 00:54:46,783 --> 00:54:49,343 Decorative unscrupulous basically 225 00:54:49,599 --> 00:54:55,743 Let's extracted all this for a specific class from each and every level 226 00:54:55,999 --> 00:55:02,143 For the particular class so let's run by 227 00:55:03,423 --> 00:55:09,567 They identified this man information this this information that sentence for bean noodles 1.5 the version 228 00:55:09,823 --> 00:55:14,431 5 yd 229 00:55:14,943 --> 00:55:21,087 Affordable hotels version 1.50 is this for 230 00:55:21,343 --> 00:55:27,487 Competitor for version 1.6.0 one 231 00:55:27,743 --> 00:55:33,887 For the Bean competitive class 232 00:55:34,143 --> 00:55:40,287 January is this artist 233 00:55:40,543 --> 00:55:46,687 Version like 1.8.3 again change from the one-point 9.0 in exchange to 234 00:55:46,943 --> 00:55:53,087 This value 235 00:55:53,343 --> 00:55:59,487 Aldi's 236 00:55:59,743 --> 00:56:05,887 Because 237 00:56:06,143 --> 00:56:12,287 Like 1.9.3 or 1.94 238 00:56:12,543 --> 00:56:18,687 Well alukal version or local classical version 239 00:56:20,223 --> 00:56:26,367 This has this mini-library version 240 00:56:26,623 --> 00:56:32,767 If it's not about then the engineer the payload isn't this and go on 241 00:56:33,023 --> 00:56:39,167 The guys are designer security 242 00:56:39,423 --> 00:56:42,751 Anybody for any of the class from any of the library 243 00:56:43,007 --> 00:56:49,151 So far that let me copy that particular script from the block 244 00:56:49,407 --> 00:56:53,247 Life incorporated into a text editor 245 00:56:54,015 --> 00:56:58,623 Soccer 246 00:57:03,743 --> 00:57:09,887 The first argument is nothing but 247 00:57:10,143 --> 00:57:16,287 Which celebrities are available to provide the class name for which we are grateful. 248 00:57:16,543 --> 00:57:22,687 Odyssey 249 00:57:22,943 --> 00:57:26,783 Engines are available for the band YouTube 250 00:57:32,415 --> 00:57:38,559 Open listen to browser 251 00:57:39,839 --> 00:57:43,423 Descendants all the library version 252 00:57:45,215 --> 00:57:51,359 It is therefore this minute in celebrity 253 00:57:51,615 --> 00:57:56,991 Is 1.9 and 4 okay 254 00:58:02,879 --> 00:58:09,023 Baby no 255 00:58:27,711 --> 00:58:33,855 Now isn't that that a bunch of documents are available and then the results are 256 00:58:34,111 --> 00:58:40,255 It just belongs to that, when you tips 1.6.1 257 00:58:40,511 --> 00:58:46,655 Is descriptive string said basically downloading Canada file into Florida 258 00:58:46,911 --> 00:58:53,055 Location 259 00:58:53,311 --> 00:58:59,455 The next thing is it's doing its using the galley utility 260 00:59:06,111 --> 00:59:08,927 Luncheon 261 00:59:09,695 --> 00:59:15,839 Bottle desert file is mentioned in this class part and part of the job 262 00:59:16,095 --> 00:59:22,239 Alice Boman Spin and I want to identify the class name and that is this 263 00:59:23,519 --> 00:59:29,663 Glass 264 00:59:30,687 --> 00:59:32,991 The moment you hit enter 265 00:59:39,647 --> 00:59:45,791 Only returned one line which contained 266 00:59:52,447 --> 00:59:58,591 Call you can identify the CDL version urd of any of the plaster 267 00:59:58,847 --> 01:00:01,919 Identify the tissue 268 01:00:02,687 --> 01:00:07,295 How we can identify this is now 269 01:00:08,319 --> 01:00:10,879 Galaxy 270 01:00:11,135 --> 01:00:17,279 No vest on. The best on this blog we have created an elaborate on that in our 271 01:00:17,535 --> 01:00:23,679 So here we are again 272 01:00:23,935 --> 01:00:30,079 How to make the host sent to an external horse and alternative 273 01:00:30,335 --> 01:00:36,479 Vistaprint.com login 274 01:00:42,623 --> 01:00:48,767 No let me give you a download on this 275 01:00:49,023 --> 01:00:54,911 Click on this 276 01:00:56,191 --> 01:01:02,335 Let me do nothing 277 01:01:16,159 --> 01:01:21,023 Not interested in. 278 01:01:22,303 --> 01:01:27,679 Call Paige anticipates with repeater because I want to play with this request 279 01:01:28,191 --> 01:01:34,335 The first point is 280 01:01:34,591 --> 01:01:40,735 Identify that better this application is uses the binary 281 01:01:40,991 --> 01:01:47,135 But it's 282 01:01:47,391 --> 01:01:53,535 Did not contain the magic fight 283 01:01:53,791 --> 01:01:59,679 What's a word that matters to identify this 284 01:01:59,935 --> 01:02:06,079 So what's the observed that it's not only that it's kind of converted 285 01:02:06,335 --> 01:02:12,479 Kobe 64 Impala charcoal compression or decomposition mechanism 286 01:02:12,735 --> 01:02:18,879 Used to transmit the data or the network so 287 01:02:19,135 --> 01:02:25,279 For that check. But it's Sabina Lisa Leslie. 288 01:02:25,535 --> 01:02:28,351 Play this in a hectometer 289 01:02:31,167 --> 01:02:35,263 It's a beautiful day that I'm supposed to do I'll be 64 decode 290 01:02:43,199 --> 01:02:49,343 A 60/40 called and I want to take out this data using its not able to identify anyting 291 01:02:49,599 --> 01:02:55,743 It's not anything it's like a 292 01:02:56,767 --> 01:03:02,911 You can simply try other decompression and other 293 01:03:03,167 --> 01:03:09,311 So let's try with decompression that support the theaters in the block 294 01:03:09,823 --> 01:03:15,455 So let's try with the broccoli decompression Plus 295 01:03:16,479 --> 01:03:18,527 That's pretty good competition 296 01:03:23,391 --> 01:03:29,535 The moment you try to do a Infinity compress usage 297 01:03:36,191 --> 01:03:37,471 Auntie 298 01:03:37,727 --> 01:03:42,079 Automatic b or not 299 01:03:43,103 --> 01:03:48,223 Base64 300 01:03:50,015 --> 01:03:52,063 Yes and good 301 01:03:52,831 --> 01:03:55,903 Base64 302 01:03:56,159 --> 01:04:02,303 Listen to pay 64 genders are 303 01:04:02,559 --> 01:04:08,703 I know two other character and zero 304 01:04:08,959 --> 01:04:15,103 Converting properly divided into 64 information 305 01:04:15,359 --> 01:04:20,991 Shelby Econoline utility 306 01:04:21,759 --> 01:04:27,135 This particle Library 307 01:04:42,751 --> 01:04:46,591 It just made for 308 01:04:47,103 --> 01:04:49,407 Now what we have done over here 309 01:04:49,919 --> 01:04:53,247 Barbie 60/40. 310 01:04:56,319 --> 01:04:59,647 Mt coded into base64 311 01:04:59,903 --> 01:05:02,975 Denville perform DP compilation 312 01:05:05,023 --> 01:05:11,167 Then again will produce the binary data 313 01:05:11,423 --> 01:05:17,567 10 converted into pesos equal to identify whether it's having magic b or not 314 01:05:18,591 --> 01:05:20,895 So let's wait for that 315 01:05:27,807 --> 01:05:32,927 Gaffers tape 316 01:05:36,511 --> 01:05:39,583 Distance 317 01:05:49,823 --> 01:05:55,967 Guys to show you that it's having 318 01:05:56,223 --> 01:06:00,063 Magic bites 319 01:06:38,975 --> 01:06:45,119 Inside installed now let me do the same process that you're done in the headquarter 320 01:06:45,375 --> 01:06:47,935 The first bill to copy our data 321 01:06:48,447 --> 01:06:53,311 And from the repeater 322 01:07:00,479 --> 01:07:04,319 10 + 222 base64decode 323 01:07:07,135 --> 01:07:12,255 That are to use the instant ability to do on completion 324 01:07:13,023 --> 01:07:19,167 Superlative 325 01:07:19,423 --> 01:07:25,567 Scooby-Doo deceitful convertible. 326 01:07:27,103 --> 01:07:33,247 The movie to buy it and turned it into a 60-point will produce 327 01:07:34,527 --> 01:07:40,671 Magic bikes that are 20 in by looking at this we are able to identify that this is a binary City 328 01:07:40,927 --> 01:07:43,743 What next 329 01:07:44,511 --> 01:07:50,655 The next thing is we have to modify our Weiser security guard charged in such a way that it will it will 330 01:07:50,911 --> 01:07:54,495 Dacosta my stable please do not need because 331 01:07:55,007 --> 01:08:01,151 Isn't existing one we are unable to complete version 332 01:08:01,407 --> 01:08:03,199 Beautifulest modify that 333 01:08:03,455 --> 01:08:09,087 Gangsta for that download this device 334 01:08:16,255 --> 01:08:20,351 So I can't be copied 335 01:08:29,823 --> 01:08:33,407 And let me download 336 01:08:35,455 --> 01:08:41,599 Nokia that Isabelle instruction is given that if you want to build that but 337 01:08:41,855 --> 01:08:47,999 You can use the Madden library and you want to install that you can simply parties 338 01:08:48,255 --> 01:08:54,399 1.7 + 3.6 339 01:08:54,655 --> 01:08:58,239 Let's Download Marvin is bad 340 01:09:01,311 --> 01:09:04,127 Support at 341 01:09:05,919 --> 01:09:07,967 Let me check it online 342 01:09:15,647 --> 01:09:19,487 It's available 343 01:09:24,095 --> 01:09:29,983 So you can download this Library so let me download it 344 01:09:31,263 --> 01:09:37,151 And say don't forget I want to download Facebook 345 01:09:37,663 --> 01:09:41,247 6 down today 346 01:09:41,759 --> 01:09:47,903 Let's say I want to extract content from that particular 347 01:09:48,159 --> 01:09:50,719 I'm using this come on 348 01:09:55,327 --> 01:09:58,143 No 349 01:09:58,399 --> 01:10:04,543 Nobby hello to Binary binary so we can compare this 350 01:10:04,799 --> 01:10:10,943 Can simply go to despacito. 351 01:10:12,223 --> 01:10:16,831 You can simply call Marvin 352 01:10:19,135 --> 01:10:24,511 Ben and the end and beautiful 353 01:10:35,519 --> 01:10:40,383 It's download all the dependency that is required and then it'll composition 354 01:10:45,503 --> 01:10:51,647 I'm just walking through the entire process that the bee 355 01:10:51,903 --> 01:10:58,047 Allina security guys just follow. 356 01:10:58,303 --> 01:11:04,447 All it's a bicycle Library 357 01:11:04,703 --> 01:11:10,847 Bicycle sport in such a tender decompress version. 358 01:11:14,943 --> 01:11:16,735 Why so serious 359 01:11:30,815 --> 01:11:35,935 I'm going to go to this particular suit Scorpio to navigate to this mail 360 01:11:36,191 --> 01:11:42,335 Jala by Cecilio 361 01:11:48,991 --> 01:11:49,759 Otis 362 01:11:50,015 --> 01:11:56,159 Executor to gender. 363 01:12:02,815 --> 01:12:06,655 Play Discord in such a way that lets me run function over here 364 01:12:06,911 --> 01:12:09,215 I'll explain what it is 365 01:12:10,751 --> 01:12:16,127 Know what I'm doing 366 01:12:19,455 --> 01:12:25,599 When you convert your when you create your object instead of 367 01:12:25,855 --> 01:12:30,975 Please pass this object to my custom function that is compressed object 368 01:12:31,231 --> 01:12:32,767 Again 369 01:12:33,279 --> 01:12:39,423 So and then information that is there within this particular function 370 01:12:39,679 --> 01:12:45,823 A-line wisha printer print this information whatever. 371 01:12:46,079 --> 01:12:52,223 That is result function and in this 372 01:12:52,479 --> 01:12:58,623 Please pass the object available object okay I'm not interested interested interested the courts will it be coming to town 373 01:13:03,743 --> 01:13:09,887 Do you think this compressed object used a different output stream 374 01:13:10,143 --> 01:13:16,287 Basically compressed Adidas is part to deflect output stream 375 01:13:16,543 --> 01:13:22,687 To compress to do the competition and then it will pop only civilized function and then 376 01:13:22,943 --> 01:13:29,087 Produce tb64 and coded value of that particular data 377 01:13:29,343 --> 01:13:33,695 Now let's run 378 01:13:33,951 --> 01:13:36,255 Now let's compile dispersed 379 01:13:37,279 --> 01:13:39,583 Again John in the same command 380 01:13:41,375 --> 01:13:46,751 Okay it's this pain with an error message stating that cannot find symbol 381 01:13:49,311 --> 01:13:55,455 Because important this particle class but 382 01:13:55,711 --> 01:13:59,039 So let me do that 383 01:14:02,879 --> 01:14:09,023 How to use sourdough starter 384 01:14:09,279 --> 01:14:13,887 I'm discharged. 385 01:14:28,991 --> 01:14:35,135 Yes baby successful that means Nadia the English version of the 386 01:14:35,391 --> 01:14:41,535 We're not supposed to go to the newly compiled source code 387 01:14:41,791 --> 01:14:43,839 Target folders 388 01:14:44,095 --> 01:14:47,935 Oddities created 389 01:14:48,703 --> 01:14:50,751 Java 390 01:14:53,055 --> 01:14:55,615 I've been job 391 01:14:55,871 --> 01:15:02,015 My Sicilian all.joy and hear the background application 392 01:15:02,271 --> 01:15:06,367 Tualatin Commons 393 01:15:06,623 --> 01:15:09,183 Youtooz 1 394 01:15:09,439 --> 01:15:14,815 And I want to change it to payload for this particular, and it's look up 395 01:15:16,863 --> 01:15:19,423 Tricky. 396 01:15:19,679 --> 01:15:25,823 Todd let's see user 99. 397 01:15:26,079 --> 01:15:28,895 Live.com 398 01:15:29,151 --> 01:15:32,991 So you see now it looks like it's done. 399 01:15:34,015 --> 01:15:39,903 Insanity complex. 400 01:15:40,159 --> 01:15:46,303 Weather 401 01:15:48,607 --> 01:15:52,703 Let me quickly check it started 402 01:15:53,471 --> 01:15:56,287 The momentary Santa supposed to discover 403 01:15:56,799 --> 01:16:02,943 Connected 404 01:16:08,831 --> 01:16:11,391 What is this 405 01:16:16,767 --> 01:16:22,911 Message 406 01:16:23,167 --> 01:16:26,239 To check WhatsApp messages 407 01:16:32,639 --> 01:16:35,711 Start rolling over 408 01:16:38,527 --> 01:16:44,671 I think it's below let me check it 409 01:16:44,927 --> 01:16:51,071 If you look at this as a message within this response tab 410 01:16:51,583 --> 01:16:57,727 Dad a message which said that the same error message said that I stupid status founded organization 411 01:16:57,983 --> 01:17:04,127 Pickleman's menu deals. Been comparator New Colossus incompatible 50 412 01:17:10,783 --> 01:17:16,927 So in order to use the order Library as we've identified at this 413 01:17:17,183 --> 01:17:23,327 Eddie's belongs to 1.7.0 2728 414 01:17:23,583 --> 01:17:29,727 So I can be able to modify advisor cereal 415 01:17:29,983 --> 01:17:36,127 Modify that that's what mentioned in this 416 01:17:36,383 --> 01:17:37,663 Spartacus light 417 01:17:37,919 --> 01:17:44,063 Okay. Excellent 418 01:17:50,719 --> 01:17:52,767 Soapy Wyandotte XML 419 01:17:53,535 --> 01:17:55,839 We have to identify the pinata 420 01:18:00,703 --> 01:18:06,847 Telephone / 9.2 just use the order librarian that is 1.7.0 421 01:18:30,399 --> 01:18:36,543 Ability successful 422 01:18:36,799 --> 01:18:42,943 You did or why so serious 423 01:18:43,199 --> 01:18:44,991 Dunderdale payload 424 01:18:46,015 --> 01:18:48,575 Open this payload 425 01:18:50,367 --> 01:18:53,695 East Point 426 01:19:00,607 --> 01:19:06,751 And restart this 427 01:19:07,007 --> 01:19:12,383 At the moment is anticipated this hour you see 428 01:19:19,039 --> 01:19:25,183 Walmart and then 429 01:19:25,439 --> 01:19:31,583 Library version within devices within the Pew a decimal that is used 430 01:19:31,839 --> 01:19:37,983 By the background applications 431 01:19:38,239 --> 01:19:42,335 So the next thing is bill due 432 01:19:45,663 --> 01:19:47,455 Stop this 433 01:19:48,735 --> 01:19:54,879 I want to know 434 01:19:55,135 --> 01:19:58,975 NCA that's a Bosch 435 01:20:00,255 --> 01:20:06,399 When I do 168 4.99 and 436 01:20:06,655 --> 01:20:08,959 8787 437 01:20:11,007 --> 01:20:17,152 Before paste copies command repurposing you to request letter starting 438 01:20:17,408 --> 01:20:22,784 On that particular port 439 01:20:23,040 --> 01:20:28,160 And if everything goes correct 440 01:20:28,672 --> 01:20:34,816 Direction from this hour 441 01:20:35,072 --> 01:20:41,216 6211 442 01:20:41,472 --> 01:20:44,544 Like Alexa 443 01:20:45,312 --> 01:20:51,456 Cortana little sister information who am I 444 01:20:51,712 --> 01:20:56,320 Information from the internal files 445 01:20:57,344 --> 01:21:00,160 So yes we are able to do this 446 01:21:00,672 --> 01:21:06,816 So all credit goes to the default Adelanto secret live 447 01:21:07,072 --> 01:21:13,216 Deployments of Simply modify device 448 01:21:13,472 --> 01:21:19,616 Why so serious in such a way that it will create custom pillow for us 449 01:21:19,872 --> 01:21:26,016 YouTube and then 450 01:21:26,272 --> 01:21:27,296 This 451 01:21:32,416 --> 01:21:38,560 I think they're supposed to go 452 01:21:38,816 --> 01:21:44,960 I apologize for that because of this demo 453 01:21:45,216 --> 01:21:51,360 And then we'll move to the next topic anyone wants to try to this bodyguard MO 454 01:21:51,616 --> 01:21:57,760 Can definitely do this and if you have any question or any question or anybody regarding any of the steps 455 01:21:58,016 --> 01:22:02,112 Please English wanted level support Channel 456 01:22:02,368 --> 01:22:04,672 15 minutes 457 01:22:05,184 --> 01:22:08,000 Contemplate 458 01:37:07,584 --> 01:37:13,472 Welcome back everyone I hope you enjoy your coffee break so let's go to the next topic 459 01:37:14,240 --> 01:37:20,384 And the external civilization and distribution 460 01:37:20,640 --> 01:37:26,784 Libras like extremity colder and colder extreme and the cast 461 01:37:27,040 --> 01:37:33,184 Okay so here is converse object using the civilization 462 01:37:33,440 --> 01:37:39,584 And it's converted to an XML data and using the distillation process 463 01:37:39,840 --> 01:37:41,632 Back to an object 464 01:37:42,144 --> 01:37:48,288 No this is example of a let's say the car class where it has again to variable 465 01:37:48,544 --> 01:37:54,688 Model and capacity we can convert this into a centralized data 466 01:37:54,944 --> 01:38:01,088 Like this and using decimal decoder we can simply convert this data Internet serialized representation 467 01:38:01,344 --> 01:38:07,488 Excellent acceleration and the Java version using this civilization 468 01:38:07,744 --> 01:38:13,888 If last name is Jawa. Pinstripes medical information and that is not so simple. 469 01:38:14,144 --> 01:38:19,008 Which has two properties model and capacity which has this particular value 470 01:38:19,520 --> 01:38:25,664 The moment we identify this kind of representation so here 471 01:38:25,920 --> 01:38:32,064 Exploit this discussion Valerie we can simply replace the class from X-Men from java. Beast 472 01:38:32,320 --> 01:38:38,464 Venstar XML decoder to the plastic cable speed command exhibition capability 473 01:38:38,720 --> 01:38:44,864 You can simply replace the XML representation of eczema decoder 474 01:38:45,120 --> 01:38:51,264 Closest Builder can simply 475 01:38:51,520 --> 01:38:55,616 So let me explain this one simple example 476 01:38:56,128 --> 01:39:02,272 So poor that I'm going to my collimation 477 01:39:02,528 --> 01:39:07,136 Let me close this bicycle 478 01:39:08,160 --> 01:39:14,304 So here again creating some sample 479 01:39:14,560 --> 01:39:15,840 It's a 480 01:39:16,096 --> 01:39:21,216 Mkg rxmd serialization 481 01:39:29,920 --> 01:39:34,272 I'm craving some parts 482 01:39:35,808 --> 01:39:39,392 Understand this concept 483 01:39:42,208 --> 01:39:47,328 Supported I'm just getting one. 484 01:39:47,584 --> 01:39:53,728 Raining I'm using the same information I'm splitting the same class that's it raining 485 01:39:53,984 --> 01:39:55,520 Java 486 01:39:58,848 --> 01:40:04,992 Order to process the eczema serialization for the specific object this object needs to be 487 01:40:05,248 --> 01:40:11,392 Your Java be okay if it's not a job in Denbigh cannot convert this into Xmas realize 488 01:40:11,648 --> 01:40:17,792 Know what is the meaning of what it what is the meaning of Java Bean Plus 489 01:40:18,048 --> 01:40:24,192 It's nothing because if you come this way 490 01:40:24,448 --> 01:40:30,592 So with the job you just require the Guitar Center method for each and every variable that is 491 01:40:30,848 --> 01:40:36,992 Title trainer and time 492 01:40:37,248 --> 01:40:43,392 Navigate to get a certain method for each of the variable 493 01:40:43,648 --> 01:40:49,792 Set Rena bye-bye-bye 494 01:40:50,048 --> 01:40:56,192 No I'm just 495 01:40:56,448 --> 01:40:58,240 Another class 496 01:40:58,496 --> 01:41:03,616 Or did your processing 497 01:41:05,664 --> 01:41:11,808 Suburb Java Edition. 498 01:41:12,064 --> 01:41:15,136 Which has this particular piece of corn 499 01:41:15,904 --> 01:41:22,048 Office supplies 500 01:41:22,304 --> 01:41:28,448 If it's not supplied any people come to this realization 501 01:41:28,704 --> 01:41:31,520 Philippine job in place and that is training 502 01:41:31,776 --> 01:41:37,920 And to store the information we have created One Pilots. 503 01:41:38,176 --> 01:41:44,320 Danville perform additional education process important pancreatic stomach and using the right object 504 01:41:44,576 --> 01:41:50,720 Be able to convert this object of class training to eczema 505 01:41:50,976 --> 01:41:57,120 City Lights Theater okay so let's 506 01:41:57,376 --> 01:42:03,264 Before their time to 507 01:42:03,520 --> 01:42:09,152 A 508 01:42:09,408 --> 01:42:15,552 Also compiled naginata to convert this object into an XML civilized 509 01:42:15,808 --> 01:42:21,952 Santa's mean class and provide eseri 510 01:42:22,208 --> 01:42:28,352 Eczema. Ser 511 01:42:28,608 --> 01:42:34,752 Some says that this is the Declaration it's converted using this Java version 512 01:42:35,008 --> 01:42:41,152 Is used to perform the sterilization is eczema decoder 513 01:42:41,408 --> 01:42:47,552 Mission training which has three attributes title trainer and type all has a string value 514 01:42:47,808 --> 01:42:53,952 Awh of the object 515 01:42:54,208 --> 01:42:56,768 It's fall from the digital Edition 516 01:42:58,048 --> 01:43:04,192 CVS 517 01:43:04,448 --> 01:43:09,056 Open the information from Dickson City Lights Theater and 518 01:43:09,568 --> 01:43:15,712 That is this information from that particular file for disability. 519 01:43:15,968 --> 01:43:22,112 Then using decimal decoder it convert XML serialize representation pack to an object 520 01:43:22,368 --> 01:43:28,512 Training class and then we are able to obtain the information 521 01:43:28,768 --> 01:43:34,912 This is using this musical.lys 522 01:43:35,168 --> 01:43:41,312 Information 50 + information which gave us 523 01:43:41,568 --> 01:43:45,152 What I'm doing I'm just creating 524 01:43:45,408 --> 01:43:51,552 It's a subject class 525 01:43:53,088 --> 01:43:58,208 Started climbing. 526 01:44:00,512 --> 01:44:06,656 I just replaced 527 01:44:06,912 --> 01:44:13,056 Yeah but I mentioned that I want to create an object or process Builder now here 528 01:44:13,312 --> 01:44:19,456 Faucet into a index 529 01:44:19,712 --> 01:44:25,856 Commence the first one because and the second one is the local 1000 530 01:44:28,672 --> 01:44:31,744 BL2 around a particular 531 01:44:38,656 --> 01:44:44,800 Let's start a list at our first fight in HD. 532 01:44:46,592 --> 01:44:52,736 The moment extremities Russian pop on the distillation 533 01:44:52,992 --> 01:44:59,136 Instead of the music last in walk this particular, like all requests 534 01:44:59,392 --> 01:45:03,488 Toodaloo closed 1000 so let's do that 535 01:45:08,096 --> 01:45:14,240 It's probably selection however it goes Hollywood 536 01:45:14,496 --> 01:45:20,640 But our commanders executed and be able to calculate 537 01:45:20,896 --> 01:45:23,968 Okay and forethought 538 01:45:26,016 --> 01:45:29,600 This is the commander replace this 539 01:45:32,160 --> 01:45:38,304 No 540 01:45:39,840 --> 01:45:45,984 Okay selentis Auto Parts only one argument and that is Martin 541 01:45:46,240 --> 01:45:52,384 Species which is a calculator on discoloration 542 01:45:55,968 --> 01:45:59,552 The moment you run that particular 543 01:46:00,064 --> 01:46:06,208 Distillation process exception but arguments gets executed 544 01:46:06,464 --> 01:46:12,608 So this is how once you start the experiment that the backend application uses the XM 545 01:46:12,864 --> 01:46:19,008 Closest civilization and then you can simply change your object 546 01:46:19,264 --> 01:46:25,408 Do you see what I see with the class which gave you a command Education First 547 01:46:25,664 --> 01:46:31,808 And by doing so 548 01:46:32,832 --> 01:46:38,976 Based on that arm exercises to inject eczema serialize data and engine 549 01:46:39,232 --> 01:46:45,376 The pillow to make seafood restaurant 550 01:46:45,632 --> 01:46:51,776 M. M Block. 551 01:46:52,032 --> 01:46:58,176 Let me give you one hint whenever you see any Json data you should always try to convert these days 552 01:46:58,432 --> 01:47:04,576 Listen to time to an XML 553 01:47:04,832 --> 01:47:05,856 Is the hint 554 01:47:06,368 --> 01:47:12,000 Anyone has any question in this realization and dislocation box-and-one 555 01:47:16,352 --> 01:47:22,496 Okay so what are you do I'll just give you a letter 10 minutes to play with this 556 01:47:22,752 --> 01:47:26,080 Then I'll give you a call tomorrow around this 557 01:47:27,360 --> 01:47:33,504 Okay I'll be can upload fortresses to export search 558 01:47:33,760 --> 01:47:38,368 Alex plainte Aspire demonstration 559 01:47:38,624 --> 01:47:40,672 So are the best 560 01:56:33,664 --> 01:56:36,992 Want to come to the exercise place of Deadpool 561 01:56:40,064 --> 01:56:43,904 Okay it looks like only one person has completed on WhatsApp 562 01:56:44,160 --> 01:56:46,208 It looks difficult right 563 01:56:46,976 --> 01:56:50,560 Did you see that in demo 564 01:57:29,472 --> 01:57:35,616 This 565 01:57:37,664 --> 01:57:42,784 The Challenge and block 566 01:57:46,112 --> 01:57:50,464 Roblox I'd let me do nothing 567 01:57:55,072 --> 01:57:56,608 B 568 01:57:57,376 --> 01:58:01,984 Total hours to update settings Alicia 569 01:58:03,008 --> 01:58:06,592 Say you said 99 570 01:58:07,616 --> 01:58:12,480 Send a message 571 01:58:12,736 --> 01:58:15,040 Okay 572 01:58:16,064 --> 01:58:19,904 No let me capture this request 573 01:58:20,160 --> 01:58:22,208 Significant postpartum 574 01:58:23,488 --> 01:58:29,632 Anticipated the repeater cuz I want to play with this request 575 01:58:29,888 --> 01:58:31,168 Seahawk again 576 01:58:31,424 --> 01:58:34,240 Expertise 577 01:58:38,080 --> 01:58:44,224 Say yes messages updated over here 578 01:58:44,480 --> 01:58:47,040 I'm sending the same 579 01:58:48,576 --> 01:58:51,136 Sickness with the different content 580 01:58:51,392 --> 01:58:53,440 It's a message to 581 01:58:53,696 --> 01:58:59,840 The moment I sent this request if it's a volatile than it just respond with the 200 okay and if you do. 582 01:59:00,096 --> 01:59:01,632 Visual here 583 01:59:05,216 --> 01:59:08,288 IMessage gets posted on 584 01:59:08,544 --> 01:59:14,688 Is Michael block site 585 01:59:16,992 --> 01:59:23,136 The first let me copy this 586 01:59:23,904 --> 01:59:25,440 Assistance 587 01:59:26,976 --> 01:59:32,864 Okay with you I'm just basting that data that is Austin request okay 588 01:59:33,120 --> 01:59:39,264 No BC Jason database you should always convert Json data in XML and a project 589 01:59:39,520 --> 01:59:42,592 So let's do that 590 01:59:44,896 --> 01:59:51,040 So the moment we sent this data it says that funded internal error message and strict 591 01:59:51,296 --> 01:59:52,832 Information 592 01:59:59,488 --> 02:00:04,096 Another apartment 593 02:00:04,864 --> 02:00:11,008 Says that failed it says error 594 02:00:11,264 --> 02:00:17,408 Autobahn exception passes this information to take somebody decoder within the read-option function 595 02:00:18,432 --> 02:00:24,576 No this is not the bird representation of the examen serialize data and that's why it's throwing an error message 596 02:00:24,832 --> 02:00:30,976 Let's create the word XML serialize data based on the information that is part 597 02:00:31,232 --> 02:00:37,376 Call Cindy to request last name is this which has one string with the name 598 02:00:37,632 --> 02:00:43,776 Call Big Daddy 599 02:00:44,032 --> 02:00:50,176 Create eczema serialized eat out this particle plus I'm just using this 600 02:00:50,432 --> 02:00:56,576 In which has one variable that is content 601 02:00:56,832 --> 02:00:59,136 Variables from here 602 02:01:00,160 --> 02:01:02,720 And I'm just passing 603 02:01:02,976 --> 02:01:09,120 The content let's examine 604 02:01:09,376 --> 02:01:13,728 User 99 605 02:01:16,032 --> 02:01:21,408 No this is not required just for the information paper so they can simply remove. 606 02:01:22,432 --> 02:01:24,480 Open this one 607 02:01:26,016 --> 02:01:32,160 Within our request 608 02:01:32,416 --> 02:01:34,720 It's responded to wonder. 609 02:01:35,744 --> 02:01:38,304 Again it's just getting Monada 610 02:01:40,608 --> 02:01:43,424 Yeah. 611 02:01:48,544 --> 02:01:51,616 Essex content correct 612 02:01:51,872 --> 02:01:53,920 What it's responded 613 02:01:54,688 --> 02:01:59,296 Yes it's Aaron decks out of bound exception 614 02:02:01,600 --> 02:02:04,416 Let me verify today 615 02:02:04,928 --> 02:02:08,256 Change that station 616 02:02:08,512 --> 02:02:14,656 Okay because I starting Debbie Strawberry Mansion 617 02:02:14,912 --> 02:02:21,056 Java how to use this money to go to class 23 618 02:02:21,312 --> 02:02:24,128 Eliza representation of this particular object 619 02:02:25,664 --> 02:02:28,480 So just replace this with 620 02:02:28,736 --> 02:02:30,784 Java string 621 02:02:31,040 --> 02:02:37,184 And send a request and you see now it's accepted 622 02:02:43,840 --> 02:02:45,888 I'll make a blog site or not 623 02:02:46,656 --> 02:02:52,800 So yes it's posted that means it's accepting to satellizer 624 02:02:53,056 --> 02:02:59,200 Presentation 625 02:02:59,456 --> 02:03:05,600 To process the process Builder 626 02:03:05,856 --> 02:03:12,000 Okay let me copy that from here 627 02:03:12,512 --> 02:03:18,656 Sensitive XML decoder I want to create an object of X-Men 628 02:03:18,912 --> 02:03:25,056 And the false challenges bm2 let's make an Autobahn God right 629 02:03:25,312 --> 02:03:31,456 Phone. I'm passing one command that is nslookup 630 02:03:31,712 --> 02:03:37,856 Eczema teaser user 99 631 02:03:38,112 --> 02:03:44,256 Endoscopy lab.com 632 02:03:44,512 --> 02:03:46,048 Seattle anticipated to 633 02:03:48,608 --> 02:03:54,752 Wegmans started they are in this position starting from zero 634 02:03:55,008 --> 02:03:56,288 0 + 1 635 02:03:56,544 --> 02:04:02,688 Now within this first argument is Anise look up 636 02:04:03,200 --> 02:04:06,016 And the second argument is this 637 02:04:06,272 --> 02:04:08,064 Copy this 638 02:04:08,576 --> 02:04:14,720 District information 639 02:04:14,976 --> 02:04:21,120 Before sending this request later start the listener 640 02:04:27,520 --> 02:04:33,664 At the moment we send this supposed to decide what you see now is because 641 02:04:33,920 --> 02:04:40,064 Able to 642 02:04:40,320 --> 02:04:44,928 Apoc nerd mod 643 02:04:45,696 --> 02:04:51,840 Open a reversal support 644 02:04:52,096 --> 02:04:58,240 Bosch 645 02:04:58,496 --> 02:05:02,848 4.99 for dyslexia 5858 646 02:05:04,128 --> 02:05:10,272 So yeah that are flashing 12 647 02:05:10,528 --> 02:05:16,416 305 severe 2385 arendas position 648 02:05:16,928 --> 02:05:19,232 Copy this information 649 02:05:19,744 --> 02:05:22,560 3 + 401 650 02:05:26,656 --> 02:05:32,800 And for where in the first argument I want to pass and see 651 02:05:33,568 --> 02:05:37,408 The second argument I want to pass iFunny option 652 02:05:38,176 --> 02:05:44,320 Guitar argument I want to Bartlett tubing Bash 653 02:05:45,600 --> 02:05:51,744 Argument 192168 4.99 654 02:05:52,000 --> 02:05:53,280 Biggest machine 655 02:05:53,792 --> 02:05:59,168 And here I've deposited the port number 858 656 02:05:59,424 --> 02:06:02,240 No it just copy this information 657 02:06:03,008 --> 02:06:09,152 B Street over here. 658 02:06:11,200 --> 02:06:14,272 On I-85 North 659 02:06:15,296 --> 02:06:21,440 The moment we sent this request to the suburb City Lights Theater 660 02:06:21,696 --> 02:06:27,840 And it will create the object approaches Builder 661 02:06:28,096 --> 02:06:34,240 Make an outbound connection to the article smashing 662 02:06:34,496 --> 02:06:40,640 Is 211 extract information like the nickname to obtain that system inform 663 02:06:40,896 --> 02:06:43,200 Then who am I 664 02:06:43,456 --> 02:06:49,600 So it's don't get paid yet it is he possibly be 665 02:06:50,368 --> 02:06:56,512 So then you can play with this particular sad or the post Expedition 666 02:06:56,768 --> 02:07:02,912 Anyone has any question in this meeting is that first field identifier 667 02:07:03,168 --> 02:07:09,312 Using Phoenix to my recorded in the back and to process the X-Men Celesta. 668 02:07:09,568 --> 02:07:15,712 You can simply create an object which uses the process Builder which gave us the capability to exit 669 02:07:15,968 --> 02:07:22,112 Command in the system so we can create a day the representation of 670 02:07:22,368 --> 02:07:25,440 Text Melita 671 02:07:25,696 --> 02:07:29,792 So anyone has any question in this 672 02:07:32,096 --> 02:07:38,240 Okay so what time do I just give you a 50 minutes to complete this exciting 673 02:07:38,496 --> 02:07:42,848 Meanwhile if you have any question just push your cousin Robert support Jenna 674 02:07:43,104 --> 02:07:48,224 And went to compete with exercise please update the pool okay so we can move forward 675 02:16:14,336 --> 02:16:18,432 W.w. Bunchie compared to Texas eyes on the channel channel 676 02:22:15,296 --> 02:22:19,136 Is it someone else telling this exercise let me add 5 more minutes 677 02:22:19,392 --> 02:22:25,536 Once you complete this one please update the pool so we can simply more power 678 02:22:26,304 --> 02:22:32,448 If you have any question any queries please 679 02:27:26,080 --> 02:27:32,224 Simplify this one 680 02:27:32,480 --> 02:27:38,624 You can competition and your question just 681 02:27:45,280 --> 02:27:51,424 These are some of the popular books that has identify in Berryville 682 02:27:51,680 --> 02:27:57,824 Oracle weblogic rest blocking atlassian bamboo Jenkins 683 02:27:58,080 --> 02:28:03,968 In all these libraries its vulnerable to external distillation of a Lamborghini and a series 684 02:28:04,992 --> 02:28:11,136 Let's go to the next station in the informant 685 02:28:11,392 --> 02:28:17,536 Java also support situation civilization and the distillation imported it supports this particular 686 02:28:17,792 --> 02:28:20,608 Barrett-Jackson by Jason Jason. 687 02:28:20,864 --> 02:28:27,008 Do lots of stuff in the bucket lots of SMS 688 02:28:27,264 --> 02:28:33,408 Passing stuff in the bucket so if you're able to provide excellent then we can pop them 689 02:28:33,664 --> 02:28:36,736 Basketball a team Jason Jason 690 02:28:37,248 --> 02:28:43,392 The Jackson laboratory is not by default vulnerable to this 691 02:28:43,648 --> 02:28:49,792 But if you're able to identify the Dixon Library is passing the in 692 02:28:50,048 --> 02:28:56,192 Boards to dodx, library in the back and then we can trick or we can create 693 02:29:02,848 --> 02:29:08,992 Celebrity is so dramatic 694 02:29:09,248 --> 02:29:15,392 Update the system information such as username 695 02:29:15,648 --> 02:29:21,792 Also read the content of a DC Pastor 25 the same 696 02:29:22,048 --> 02:29:28,192 Drpepper.com m-block / DPS class 10 micro block 697 02:29:30,496 --> 02:29:34,848 What you have to do let me show you the insertion point first 698 02:29:35,616 --> 02:29:41,760 So first let me go to my calendar Sheena login to the application login to deposit box 699 02:29:42,016 --> 02:29:44,576 Hippie clothes 700 02:29:45,088 --> 02:29:48,672 Let me go to my browser 701 02:29:48,928 --> 02:29:50,464 Okay 702 02:29:50,720 --> 02:29:52,768 The challenge Robinson 703 02:29:57,888 --> 02:30:04,032 Okay let us capture something let you skip to this particular request in About Schmidt 704 02:30:06,336 --> 02:30:09,408 Roxy in sap on 705 02:30:14,528 --> 02:30:20,672 Not here to play with this request 706 02:30:24,256 --> 02:30:30,400 Pasty let's email from Jason 707 02:30:30,656 --> 02:30:36,800 Any other message or not 708 02:30:37,056 --> 02:30:41,920 I'm just reminding people addresses sending the into a Json data 709 02:30:42,688 --> 02:30:48,832 You see in the response it says that I just received 710 02:30:49,088 --> 02:30:55,232 Exception faster decimal dejection exception 711 02:30:55,488 --> 02:31:01,632 No suggestion is not directly related to the situation at 8 but if you scroll up with down 712 02:31:01,888 --> 02:31:08,032 Spring spring spring framework is used by this particle application 713 02:31:08,288 --> 02:31:14,432 Your data is passed from this particular Library 714 02:31:15,456 --> 02:31:18,784 No you'll do identify 715 02:31:19,040 --> 02:31:25,184 Yotel Indies 25 A + B basically 716 02:31:25,440 --> 02:31:30,304 In the spring framework 717 02:31:30,560 --> 02:31:36,704 Terry's latest spring explicit language was basically allowed allowed you to define a specific bin 718 02:31:36,960 --> 02:31:43,104 Which contains 3x ml 719 02:31:43,360 --> 02:31:49,504 So this is kind of a him but the cool thing here to understand is that Jackson is not by default 720 02:31:49,760 --> 02:31:55,904 Somehow if you are able to identify that the Jackson is passing the input 721 02:31:56,160 --> 02:32:02,304 The Bakken Library all simply 722 02:32:02,560 --> 02:32:08,704 Celebrity 10:50 you to play with this exercise Channel 723 02:32:08,960 --> 02:32:15,104 Clear all the concept during a demonstration against 724 02:32:15,360 --> 02:32:17,664 Anyone has any question in this 725 03:19:28,255 --> 03:19:30,559 Recording in progress 726 03:24:22,911 --> 03:24:27,775 Covid-19 727 03:24:32,383 --> 03:24:34,431 Click me 728 03:24:44,159 --> 03:24:50,303 And Edmund. 729 03:24:50,559 --> 03:24:54,143 Navigation dentist capture request 730 03:24:57,727 --> 03:24:59,519 Asbestos bait 731 03:24:59,775 --> 03:25:05,919 And you see within this particular request Teresa and accept an assistant cookie 732 03:25:06,175 --> 03:25:12,319 Specific signature kind of magic b application 733 03:25:12,575 --> 03:25:18,719 It's double ee AAA t 734 03:25:18,975 --> 03:25:25,119 Information protection 735 03:25:25,375 --> 03:25:31,519 Darknet 736 03:25:32,799 --> 03:25:36,895 Are there two devices 737 03:25:37,919 --> 03:25:44,063 The plugins that aisle two uses jandric 738 03:25:44,319 --> 03:25:50,463 Target and Department of the spine in Palmetto and Isleta 739 03:25:50,719 --> 03:25:56,863 The Powershell command 740 03:25:58,911 --> 03:26:04,031 VRBO to replace the sex with our user ID 741 03:26:05,055 --> 03:26:10,175 Kamar Kamar 742 03:26:10,431 --> 03:26:13,247 Replace this command within our hippie turtle 743 03:26:13,503 --> 03:26:17,599 Delete texting data 744 03:26:17,855 --> 03:26:23,999 And baystar payload over here 745 03:26:24,255 --> 03:26:26,815 Start 746 03:26:27,071 --> 03:26:29,631 Snap-on Asawa 747 03:26:29,887 --> 03:26:34,239 Barnacle Bob's 748 03:26:34,751 --> 03:26:40,895 T hyphen mstp. 749 03:26:41,151 --> 03:26:43,711 8 time as a report I'm eight 750 03:26:43,967 --> 03:26:46,271 So late just forward back 751 03:26:47,807 --> 03:26:53,951 Now let's send a request to the summer 752 03:26:54,207 --> 03:27:00,351 Involve developers using Powershell command 753 03:27:00,607 --> 03:27:06,751 Analog that be able to obtain a username 754 03:27:07,775 --> 03:27:13,919 Username from the environment 755 03:27:14,175 --> 03:27:16,223 So 756 03:27:16,479 --> 03:27:22,623 You can take this command from one liner from any of the Gita 757 03:27:22,879 --> 03:27:29,023 This is available to power silverliner to create a socket using the 758 03:27:29,279 --> 03:27:35,423 System dotnet socket Library 759 03:27:35,679 --> 03:27:41,823 Ravioli pasta system in quality IP address of the articles 760 03:27:42,079 --> 03:27:48,223 Then it will open the communication Channel between 761 03:27:48,479 --> 03:27:54,623 The Atticus machine and the application server where you can simply type Pokemon. 762 03:27:54,879 --> 03:27:56,159 Auntie socket 763 03:27:56,415 --> 03:27:59,999 So hs101 parties 764 03:28:02,303 --> 03:28:08,447 This utility is also providing you with a heart actual command 3002 765 03:28:08,703 --> 03:28:14,847 On the actual license 766 03:28:15,103 --> 03:28:20,479 Download this Pisces zero.exe bombachita and you can simply run this 767 03:28:20,991 --> 03:28:24,319 Sony just copy this information 768 03:28:24,831 --> 03:28:28,159 Basted with interest 769 03:28:33,535 --> 03:28:39,679 And before sending the command to start a listener 770 03:28:39,935 --> 03:28:44,287 Deportees letting 444 771 03:28:44,543 --> 03:28:50,687 And it sent this request realized binary data type 772 03:28:50,943 --> 03:28:57,087 To make a connection to the 773 03:28:57,343 --> 03:29:03,487 Correction Ford E-250 IP address of system 774 03:29:03,743 --> 03:29:08,863 Our challenge is to read the content of pinto Thai 775 03:29:09,631 --> 03:29:13,983 Who am I 776 03:29:14,239 --> 03:29:20,383 Yes we are 777 03:29:20,639 --> 03:29:26,783 In order to file contempt to use the small command at sassy windows 778 03:29:28,831 --> 03:29:34,975 Mean. 779 03:29:35,231 --> 03:29:40,351 This is how when she can play with it to the first expedition 780 03:29:41,375 --> 03:29:47,519 Okay so anyone has any question in this it's kind of a straightforward attack sparked by the Civilized Eda 781 03:29:47,775 --> 03:29:53,919 Olive Garden. Net 782 03:29:54,175 --> 03:29:56,735 Straightforward expert application 783 03:29:56,991 --> 03:30:03,135 Jordan purchased a 10 minutes over here 784 03:30:03,391 --> 03:30:09,279 70 question just pushed your question on the balance of agenda 785 03:40:11,391 --> 03:40:15,231 Okay so the next topic 786 03:40:17,279 --> 03:40:23,423 And that is case study about the same binary 787 03:40:23,679 --> 03:40:29,823 Using the 2017 788 03:40:30,079 --> 03:40:36,223 97-85 789 03:40:36,479 --> 03:40:42,623 Know what researchers identify that the source code is available and he just analyzed 790 03:40:42,879 --> 03:40:49,023 10 CS 791 03:40:49,279 --> 03:40:55,423 Nancy Hupp exes 792 03:40:55,679 --> 03:41:01,823 Tortillas that is a CSR cookie that is generated and you just able to identify 793 03:41:02,079 --> 03:41:08,223 City Lights Theater application 794 03:41:08,479 --> 03:41:14,623 All devices united.net and is able to incorporate this into a 64 795 03:41:14,879 --> 03:41:21,023 Able to use D using this he's able to internet cfx 796 03:41:21,279 --> 03:41:27,423 By simply identify their tcsr cookie contains Define racialized kind of the signature. 797 03:41:27,679 --> 03:41:33,567 Seems like waepa 798 03:41:34,335 --> 03:41:40,479 So it's a very interesting world that a researcher has identified 799 03:41:40,735 --> 03:41:45,343 Guess it's fighting this relation and let me check the time 800 03:41:45,855 --> 03:41:49,695 Okay so we are heading to the lunch breaks what I do 801 03:41:50,207 --> 03:41:56,351 I'll just give you a lunch break first then we'll start with an ectopic okay so I'm heading 802 03:41:57,887 --> 03:42:00,703 Lunch break 803 03:42:01,983 --> 03:42:05,311 103 minutes 63 minutes 804 03:42:06,079 --> 03:42:09,663 Lunch break 805 03:42:13,247 --> 03:42:19,391 Do during the lunch break if you want to play with all the exercise order them seen today you can play with it if you have any question 806 03:42:19,647 --> 03:42:25,791 Just lost your passion in the Bible support available during the lunch break on the spot 807 03:51:32,607 --> 03:51:38,751 Python Windows 12 808 03:51:42,079 --> 03:51:48,223 Able to read content able to 809 03:51:50,015 --> 03:51:55,647 So this is all you can play with them 810 03:51:55,903 --> 03:52:02,047 But this is kind of a terrible example of playlist a python desolation 811 03:52:02,303 --> 03:52:08,447 Identify that the back of the application is processing the user input without doing any validation 812 03:52:08,703 --> 03:52:14,847 State of a pass to d510 lettuce and pickles pumpkin and by providing delicious 813 03:52:15,103 --> 03:52:19,967 110 pitches David introduce function is able to Carpenter 814 03:52:20,223 --> 03:52:26,367 HDMI splitter 815 03:52:26,623 --> 03:52:32,767 Addiction 816 03:52:33,023 --> 03:52:39,167 Application template framework in which they have 817 03:52:39,423 --> 03:52:45,567 Callate custom variable allowed to do certain applications 818 03:52:46,335 --> 03:52:52,479 So he might be over exporting temperatures in his little different so I'm thinking about 819 03:52:52,735 --> 03:52:58,879 Template Life Application needs to process some dynamic 820 03:52:59,135 --> 03:53:05,279 It is provided by the user then injected injected into a particular skeleton and then 821 03:53:05,535 --> 03:53:11,679 It was Santa skeleton abuser now 822 03:53:11,935 --> 03:53:18,079 Kind of operation 823 03:53:18,335 --> 03:53:24,479 Alexa application 824 03:53:24,735 --> 03:53:30,879 Radio email address your name and everything so it will send an email to you which has a content 825 03:53:31,135 --> 03:53:37,279 It says that Alex Posey Welcome to our website 826 03:53:37,535 --> 03:53:43,679 Percent of discount 827 03:53:43,935 --> 03:53:50,079 Against 828 03:53:50,335 --> 03:53:56,479 On to answer time and if you haven't reset your password then 829 03:53:56,735 --> 03:54:02,879 Kindly report back to us so now if it has starting data that is 830 03:54:03,135 --> 03:54:09,279 Dynamic which is provided by the user send the first example 831 03:54:09,535 --> 03:54:15,679 The name is only the dynamic parameter 832 03:54:15,935 --> 03:54:22,079 Data is look static within within our email the dynamic data is nothing but your name 833 03:54:22,335 --> 03:54:28,479 The timestamp that is a zombie let the back and sober and the IP address of The Climb 834 03:54:28,735 --> 03:54:31,807 No Vinny look at this versus 835 03:54:32,831 --> 03:54:38,975 The biggest independent 836 03:54:39,231 --> 03:54:45,375 It's over here so take another example of literally 837 03:54:45,631 --> 03:54:51,775 Navigate to 31st and features it last your name email address of your friend and Custom 838 03:54:52,031 --> 03:54:58,175 Text if you want to send to your friend now when you put values and you said if I don't 839 03:54:58,431 --> 03:55:04,575 When you click on this reproduction button in the back and all this report 840 03:55:04,831 --> 03:55:10,975 Static template HTML template or any other programming language template and then sends 841 03:55:24,543 --> 03:55:30,687 Needs to be properly validated because it all except the user supplied input 842 03:55:30,943 --> 03:55:34,783 Template injection attack 843 03:55:35,039 --> 03:55:41,183 So here we have given an example example of malicious 844 03:55:42,463 --> 03:55:48,095 So kind of hello information from the name parameter 845 03:55:48,607 --> 03:55:54,751 So the sentence start with less than percentages and ending with percentage 846 03:55:55,007 --> 03:56:01,151 What about the code that is written in between these two tag it will execute by B2B sintex 847 03:56:01,407 --> 03:56:07,551 Read the name from Lexi requests if I provided the name 848 03:56:07,807 --> 03:56:09,855 Hello Sanjay 849 03:56:10,879 --> 03:56:17,023 Allstate an example of lip reading of 16 * time.now. 850 03:56:17,279 --> 03:56:23,423 If time wasn't so it will simply replace this value with the current time 851 03:56:24,191 --> 03:56:30,335 Now the standard followed the general journal and that is arithmetic operation 852 03:56:30,591 --> 03:56:36,735 So when we programmed to 7% 853 03:56:36,991 --> 03:56:43,135 Navigation process this than this evaluated s49 in the response we are 854 03:56:43,391 --> 03:56:49,535 The 49s output then it might be vulnerable 855 03:56:49,791 --> 03:56:54,911 If you want to file then you can simply use the default the class that is 856 03:56:55,167 --> 03:57:01,311 That and that is filed within the file class you can simply use the open method 857 03:57:01,567 --> 03:57:07,711 You provide apart of the 5:31 and using this again 858 03:57:12,319 --> 03:57:18,463 So you're the result being used in the park 859 03:57:18,719 --> 03:57:24,863 Then you are to list down to matters that is available for that particular engine which can be used to perform 860 03:57:25,119 --> 03:57:31,263 Just like 35 execute command and so on 861 03:57:31,519 --> 03:57:33,567 Appropriate equipment to perform the action 862 03:57:34,079 --> 03:57:40,223 So based on their top next album next exercise Barbie tablet injection 863 03:57:40,479 --> 03:57:46,623 Identify the template engine and exported to extract the file WT 864 03:57:46,879 --> 03:57:53,023 Shenandoah list jobs.com 865 03:57:57,119 --> 03:57:59,935 I believe this particular 866 03:58:03,263 --> 03:58:09,407 What are the largest attendance to play with this exercise then we'll move to the next one 867 03:58:09,663 --> 03:58:15,807 Internal 868 03:58:16,063 --> 03:58:22,207 If you have any question you can simply post your question on on the directives power support 869 03:58:27,071 --> 03:58:33,215 And if we could be host a pole in 10 standard so 870 04:08:11,007 --> 04:08:17,151 Song to your computer this one now let me give you a walkthrough around this 871 04:08:20,991 --> 04:08:27,135 Support at let me go to my calendar 872 04:08:27,391 --> 04:08:28,159 Back-end 873 04:08:28,415 --> 04:08:31,487 M13 engine is used 874 04:08:36,607 --> 04:08:39,423 So let me goo goo shop. 875 04:08:39,935 --> 04:08:46,079 I'm here the title says that you exported rubia with a injection 876 04:08:46,335 --> 04:08:48,639 Application 877 04:08:49,151 --> 04:08:55,295 Is that possible so the moment units are you navigate to this report. 878 04:08:55,551 --> 04:08:57,599 And for what information 879 04:09:02,719 --> 04:09:06,047 Let me know police come here 880 04:09:19,615 --> 04:09:24,223 Ask for the name email address of your plant 881 04:09:24,735 --> 04:09:30,623 41 to refer and the message that you want to send so let's say 882 04:09:31,647 --> 04:09:37,791 I want to invite through my friend is 883 04:09:38,047 --> 04:09:42,143 Da tennis has a treadmill realtor.com 884 04:09:42,399 --> 04:09:48,543 Message I want to send hey this is an 885 04:09:48,799 --> 04:09:50,847 Awesome site 886 04:09:51,359 --> 04:09:54,687 Okay no 887 04:09:55,199 --> 04:09:59,295 Click on this report a before that late just intercepted request 888 04:10:00,575 --> 04:10:03,135 The movie duplicitous refer-a-friend 889 04:10:03,391 --> 04:10:09,535 It's sending replace two tea different dominant that is mr. Perfect leprechaun 890 04:10:09,791 --> 04:10:12,863 Latest copy this information 891 04:10:13,631 --> 04:10:16,447 And the poverty Quest is 892 04:10:17,215 --> 04:10:23,359 It says that 893 04:10:23,615 --> 04:10:29,503 Hey it's running Ruby on Rails or in the back end and the version is this 894 04:10:31,551 --> 04:10:37,695 Something that happened that day because I'm calling the different different Library 895 04:10:37,951 --> 04:10:44,095 Try to analyze all the request from your application 896 04:10:44,351 --> 04:10:50,495 Kind of information today 897 04:10:50,751 --> 04:10:51,775 Bougie 898 04:10:52,799 --> 04:10:56,895 So let's check what information received 899 04:10:57,151 --> 04:11:03,295 Auntie to.net Cedric Maranatha. Cam soda.com 900 04:11:05,343 --> 04:11:08,927 NSS 901 04:11:15,071 --> 04:11:21,215 So it has this man information provided in in the referral. 902 04:11:21,471 --> 04:11:27,615 Has falling is your message hey this isn't 903 04:11:27,871 --> 04:11:34,015 Awesome site right now and thanks 904 04:11:34,271 --> 04:11:40,415 Better to input that is that is injected 905 04:11:40,671 --> 04:11:46,815 Under this name and the message that we want to send to our friends okay 906 04:11:47,071 --> 04:11:49,887 Let's try to exploit 907 04:11:50,911 --> 04:11:56,031 Injectable injection attack try to inject our pillow 908 04:11:56,287 --> 04:11:59,871 Call dad let me again Google 909 04:12:00,895 --> 04:12:07,039 Let's try to let's say 910 04:12:07,295 --> 04:12:10,111 Detect whether it's possible or not 911 04:12:10,367 --> 04:12:15,999 Hope it is information provided 912 04:12:16,255 --> 04:12:21,375 Through Darkness eccentric millionaire 913 04:12:23,167 --> 04:12:29,311 So let's check this information. 914 04:12:29,823 --> 04:12:32,127 Received another email 915 04:12:34,687 --> 04:12:38,783 Okay that might be song 916 04:12:48,255 --> 04:12:53,631 This is not the correct context ending B 917 04:12:53,887 --> 04:13:00,031 This percentage could just use the website provide the correct syntax 918 04:13:02,591 --> 04:13:05,151 And then let's check that 919 04:13:07,455 --> 04:13:09,759 Percentage 920 04:13:10,015 --> 04:13:14,367 Percentage 921 04:13:19,743 --> 04:13:25,887 Know the moment we received information that is received on email address 922 04:13:26,143 --> 04:13:31,263 You have been referred to join us but 923 04:13:31,775 --> 04:13:37,919 The information that you provided within the message gets you a letter 249 924 04:13:40,479 --> 04:13:46,623 No energy student pecan television try to stand up a load today 925 04:13:48,415 --> 04:13:53,279 Swimsuit up. Let me copy this page 926 04:13:56,351 --> 04:14:00,703 And replace this but 727 927 04:14:03,007 --> 04:14:09,151 Fire. And please read all the content and replace this with 928 04:14:09,407 --> 04:14:15,551 This particular Tech in the back-and-forth pretty content. 929 04:14:15,807 --> 04:14:21,951 Spider booty and replace it with the message that I received on the user's email address 930 04:14:23,231 --> 04:14:25,791 Romantic music 931 04:14:26,303 --> 04:14:32,447 Mr. Message 932 04:14:32,703 --> 04:14:38,847 This is how we can exploit the template injection attack where identify 933 04:14:39,103 --> 04:14:45,247 What are the input status in process in in the template and then began 934 04:14:51,903 --> 04:14:58,047 Olmsted Center mail 935 04:14:58,303 --> 04:15:03,423 Oompa Loompa condenser injected and then exported father 936 04:15:06,239 --> 04:15:11,871 So what does Welch's let me add 10 more minutes to play with this one 937 04:15:15,199 --> 04:15:21,343 Meanwhile if you have any question just put your passion on the barracks. 938 04:25:14,751 --> 04:25:17,823 Insect looks like Westerfield compare this one 939 04:25:19,359 --> 04:25:24,735 Yes 961now 940 04:25:24,991 --> 04:25:31,135 And that is kids today around Lemoore graduation Basmati template 941 04:25:31,391 --> 04:25:37,535 This particular send text 727 with the Calabasas for 942 04:25:37,791 --> 04:25:43,935 Each and every value that is there within the last name username 943 04:25:44,191 --> 04:25:46,495 No 944 04:25:46,751 --> 04:25:49,311 Use this invitation sent with a friend 945 04:25:49,567 --> 04:25:55,711 And the moment it was sent an invitation it will read this first name last name and username of that particular user 946 04:25:55,967 --> 04:26:02,111 Now the moment Resort the researcher friend received contains the address which indicates that 947 04:26:02,367 --> 04:26:08,511 Information is evaluated as 49 and that indicates that 948 04:26:08,767 --> 04:26:14,911 Has done next 949 04:26:15,167 --> 04:26:21,311 There are certain variable that is available within that particular template and variables 950 04:26:21,567 --> 04:26:27,711 What version basically respond with d.c. diversion of the particle template at the moment he provide this particular 951 04:26:27,967 --> 04:26:34,111 Electric beater into Little Falls 952 04:26:34,367 --> 04:26:40,511 In the email that his parents receive 953 04:26:40,767 --> 04:26:46,911 Information based on that he has identified that in order 954 04:26:47,167 --> 04:26:53,311 Is required to pass cpsp core within this speech detect life coronavirus starting calabrese's phpne 955 04:26:53,567 --> 04:26:57,151 Ankle braces and then at ending Calabasas 956 04:26:57,407 --> 04:27:03,551 A starting-caliber 65in in Calabasas 957 04:27:08,927 --> 04:27:15,071 Okay so when send office receive this information you just responded 958 04:27:15,327 --> 04:27:21,471 Teespring hello now based on that has identified that there is of 959 04:27:21,727 --> 04:27:27,871 Simple functions available file get content with basically used to read to the content of internal fire and this is. 960 04:27:28,127 --> 04:27:34,271 Centex se425 961 04:27:34,527 --> 04:27:40,671 3524 speedometer and then once 962 04:27:40,927 --> 04:27:47,071 It's stored within this dollar variable and simply dumped. 963 04:27:47,327 --> 04:27:52,703 The moment he provided this particular the last name 964 04:27:52,959 --> 04:27:59,103 In the email that his friend system contain departed responsibility to this is how he's able to 965 04:27:59,359 --> 04:28:05,503 Smart smart dumpling 966 04:28:05,759 --> 04:28:11,903 That is their only Hiccup and the Portugal not Best Buy 967 04:28:12,159 --> 04:28:18,303 And it is exhibition jetpens require flea market okay 968 04:28:21,119 --> 04:28:27,263 They certainly started analysis this particular but there is no problem 969 04:28:27,519 --> 04:28:33,663 Father explaining this over here let me explain this from their children 970 04:28:34,687 --> 04:28:36,223 Sorry 971 04:28:41,087 --> 04:28:43,391 So let me open up this URL 972 04:28:54,399 --> 04:29:00,543 I mentioned that there is no public places are available to download 973 04:29:00,799 --> 04:29:06,943 Bible version and the best version 974 04:29:07,199 --> 04:29:13,343 The flea market is just lettuce 975 04:29:13,599 --> 04:29:19,743 Search for the pre-market keyboard with Indy and he's able 976 04:29:19,999 --> 04:29:26,143 In the Spanish alphabet 977 04:29:26,399 --> 04:29:32,543 So based on this assumption that this is kind of processing so many pre-market 978 04:29:32,799 --> 04:29:38,943 Weather keywords that means this is Walter able to not template injection attack 979 04:29:39,199 --> 04:29:45,343 What he has done he just deployed the volleyball version with on the doctor and just navigate 980 04:29:45,599 --> 04:29:49,695 Notification template and here 981 04:29:50,207 --> 04:29:56,351 Within the article digest subject like 19 982 04:29:56,607 --> 04:30:02,751 I do in 1191 and 27 so it's that you related to 1337 983 04:30:03,007 --> 04:30:07,871 He just kept your request that is far from the from this particular Dhaka 984 04:30:08,127 --> 04:30:14,271 So this is that what he has done 985 04:30:14,527 --> 04:30:20,671 Adika system-level, he just used this particular class pre-market a utility. 986 04:30:20,927 --> 04:30:27,071 Okay and within that you just called ID parameter ID, 987 04:30:30,399 --> 04:30:36,543 That means this particular class is not allowed 988 04:30:36,799 --> 04:30:39,615 Auntie log analysis has identified that 989 04:30:39,871 --> 04:30:46,015 The institution or into instant setting free-market temperature today Institute is not allowed in the tablet 990 04:30:46,271 --> 04:30:52,415 Teresa 991 04:30:54,463 --> 04:31:00,607 This on the father-in-law is this yes identify that someone else did I do 992 04:31:00,863 --> 04:31:02,143 People who has 993 04:31:02,399 --> 04:31:08,543 Representante present in blackhat USA 2020 994 04:31:08,799 --> 04:31:14,943 Which provided survey or just shown a way to the sexy to the commands 995 04:31:15,199 --> 04:31:21,087 Incase or in case of this reminder template okay so here 996 04:31:21,599 --> 04:31:27,487 Function table use this object proper function 997 04:31:27,999 --> 04:31:34,143 Which allow us to do until she action of the class which basically allows to execute the system command 998 04:31:34,399 --> 04:31:40,543 Okay so by doing that while providing this particular payload within the content section 999 04:31:40,799 --> 04:31:46,943 Security system commands are available 1000 04:31:47,199 --> 04:31:53,343 By comparing the older version of Let's available version with a patch version a researcher is able to identify the endpoint 1001 04:31:53,599 --> 04:31:59,743 And based on the research that that someone is published in the blackhat USA 1002 04:31:59,999 --> 04:32:06,143 Spending is able to create his payload execute the system malfunction order system-level commands 1003 04:32:06,399 --> 04:32:09,983 So 1004 04:32:12,543 --> 04:32:17,663 This is about our seeing jetbrains you break while flea market template 1005 04:32:19,199 --> 04:32:24,831 Okay with that said I'll be done without him replace ignition module 1006 04:32:25,087 --> 04:32:31,231 Yes so we are heading to the coffee place or what I'll do I'll just give you 15 minutes coffee play 1007 04:32:31,743 --> 04:32:34,559 Then we'll move to the next topic 1008 04:32:43,775 --> 04:32:49,919 If you have any question any queries regarding the any topics that we are covered 1009 04:32:50,175 --> 04:32:56,319 Today simply send us shopping OnStar support Channel 1010 04:47:40,799 --> 04:47:44,383 Everyone welcome back I hope you enjoyed your coffee break 1011 04:47:45,151 --> 04:47:51,295 Let's go to the next one so with that said we done without an education module 1012 04:47:51,551 --> 04:47:57,695 Let's go to the next month 1013 04:47:57,951 --> 04:48:04,095 This is about how we can talk on the speaker 1014 04:48:04,351 --> 04:48:05,119 Tradition 1015 04:48:05,375 --> 04:48:11,519 Then we'll discuss about psychology and some Bedouin stopping condition 1016 04:48:11,775 --> 04:48:17,919 Expedition diction but if the graph 1017 04:48:18,175 --> 04:48:24,319 Epi passes information on user input in the other applications and that's very 1018 04:48:26,111 --> 04:48:32,255 No disciplinary action is the most deadliest application Doman 1019 04:48:32,511 --> 04:48:38,655 Now what is the stipulation and a habit occurs when a user Supply dimple 1020 04:48:38,911 --> 04:48:45,055 Use a tablet input is passed in this political query in the back and enhancers manner 1021 04:48:45,311 --> 04:48:51,455 The moment that happen it will allow on read or write 1022 04:48:51,711 --> 04:48:57,855 Sometime it will allow 1023 04:48:58,111 --> 04:49:04,255 Do you want to stop classic example of SQL injection attack where someone is created 1024 04:49:04,511 --> 04:49:10,655 Is Baker to drop the entire database of the traffic of the city 1025 04:49:10,911 --> 04:49:17,055 So the moment that person violates the traffic camera captured 1026 04:49:17,311 --> 04:49:23,455 Image it will process daddy. Expecting a place and try to Insects bodyguard number plates information 1027 04:49:23,711 --> 04:49:29,855 David contains to drop database 1028 04:49:30,111 --> 04:49:36,255 I dropped internet came back and no city has lost a dab 1029 04:49:36,511 --> 04:49:42,655 How good you are the people in order to export Circle in Jacksonville 1030 04:49:42,911 --> 04:49:45,471 It's too 1031 04:49:49,823 --> 04:49:55,967 What's the condition of identify in the past and doing today's weather in Redfin 1032 04:49:56,223 --> 04:50:02,367 Reckoning exercise 1033 04:50:02,623 --> 04:50:08,767 Hey this is my organization name you want to perform complete repping assessment for 1034 04:50:09,023 --> 04:50:15,167 This particular organization badio to identify all the open network open network 1035 04:50:15,423 --> 04:50:21,567 Pisces all its application which is belong to my organization and your end goal is to to compromise 1036 04:50:21,823 --> 04:50:26,431 Interactive domain controller 1037 04:50:27,455 --> 04:50:33,599 What BMW have straightaway started in ambition face and / so many devices and 1038 04:50:33,855 --> 04:50:39,999 Yeah identify so many applications which is belongs to that particular organization 1039 04:50:40,255 --> 04:50:46,399 Application looks interesting. 1040 04:50:46,655 --> 04:50:52,799 Weird-looking web application 1041 04:50:53,055 --> 04:50:59,199 My sitting at phone will identify what notification to this b******* on the web server within the internet 1042 04:51:05,855 --> 04:51:11,999 Able to insert Alexa provide input Pacific parent request and application respond 1043 04:51:12,255 --> 04:51:18,399 Output of dupatta classical Perry 1044 04:51:18,655 --> 04:51:24,799 Identify the back-end database user or let's say that 1045 04:51:25,055 --> 04:51:31,199 Adopted sister named Alexa that username on which this particular database service is running 1046 04:51:31,455 --> 04:51:37,599 The same thing and you identify that this particular the back-end database server is 1047 04:51:37,855 --> 04:51:43,999 Nothing but the Mac play Server 2012 server okay 1048 04:51:44,255 --> 04:51:50,399 The name of the user at that is SAU Zircon which this data services running 1049 04:51:50,655 --> 04:51:56,799 Music is the highest privileged user with a database 1050 04:51:57,055 --> 04:52:01,919 Legally allowed to do anything 1051 04:52:02,431 --> 04:52:08,319 So what we have done we just enabled one of the stored procedure so what is stored procedure 1052 04:52:08,575 --> 04:52:14,719 So this is the default store closes at Isabella 1053 04:52:14,975 --> 04:52:21,119 So here we are using the XP cmdshell stored procedure in order to 1054 04:52:21,375 --> 04:52:27,519 Music does equal pay 1055 04:52:27,775 --> 04:52:33,919 Physically exponential of the user that is locked in love into that particular box 1056 04:52:34,175 --> 04:52:40,319 What is the time of heck that is unlimited support of the movie cards on the Windows 2000 1057 04:52:40,575 --> 04:52:46,719 Unable to accept contact. 1058 04:52:47,999 --> 04:52:54,143 All of the user is logged in on how long into the box but we are able to Dumpty 1059 04:52:54,399 --> 04:53:00,543 Password hashes of database user 1060 04:53:01,823 --> 04:53:07,967 So what you have done we just try to crack it offline 1061 04:53:08,223 --> 04:53:14,367 Who said locally 1062 04:53:14,623 --> 04:53:20,767 Sometimes what you have done deal by what what type of song Alice's box 1063 04:53:21,023 --> 04:53:27,167 Did Elvis ever done 1064 04:53:27,423 --> 04:53:33,567 OtterBoxes with internet work which basically running DMS sequel service 1065 04:53:33,823 --> 04:53:39,967 List list of the Court which contains or which running domestic box office 1066 04:53:40,223 --> 04:53:46,367 Awsomotive password has is also correct Biby password-cracking rig 1067 04:53:46,623 --> 04:53:52,767 Spotswood on all the boxes which is running a Mexican service 1068 04:53:53,791 --> 04:53:59,935 Why don't the box has accepted one of the credential that is luckily for us and unlucky for the 1069 04:54:00,191 --> 04:54:03,263 The organization which is the windows 2003 server 1070 04:54:03,775 --> 04:54:09,919 Which is outdated system at the time so the next thing 1071 04:54:10,175 --> 04:54:16,319 We have to do is let you load the memory card so I can be able to check what using Voice 1072 04:54:16,575 --> 04:54:22,719 It's running 1073 04:54:22,975 --> 04:54:29,119 And then be able to load the mini cards and we are able to extract 1074 04:54:29,375 --> 04:54:35,519 Abuser that is locked in on this particular box 1075 04:54:35,775 --> 04:54:41,919 Abuse of your settlement check his credentials against the domain controller and you won't believe that one of the user is at 1076 04:54:42,175 --> 04:54:48,319 In real life by admin user is there on the outdated box 1077 04:54:48,575 --> 04:54:54,719 Sites lucky photos right we are able to obtain a dominator system using this 1078 04:54:54,975 --> 04:55:01,119 It seems impossible Egyptian 1079 04:55:01,375 --> 04:55:07,519 Expected expected 1080 04:55:07,775 --> 04:55:13,919 32GB hash using the decision technique which basically allows to to do. 1081 04:55:14,175 --> 04:55:20,319 Golden ticket within the domain controller ticket is nothing but the guy 1082 04:55:20,575 --> 04:55:26,719 End of admin privileges user with basically allowed to do anything with him. 1083 04:55:26,975 --> 04:55:33,119 What you have done by sitting at home DIY water department work forwarded download 1084 04:55:33,375 --> 04:55:39,519 Splitsville Tampa passport offices 1085 04:55:39,775 --> 04:55:45,919 And spice up line with password 1086 04:55:46,175 --> 04:55:52,319 Playing this to develop your data system 1087 04:55:52,575 --> 04:55:58,719 Yeah able to obtain and that's it. 1088 04:55:58,975 --> 04:56:05,119 Able to obtain a golden ticket while sitting at home so you see 1089 04:56:05,375 --> 04:56:11,519 Calamity is the one should be always careful while identify 1090 04:56:11,775 --> 04:56:17,919 Ending application 1091 04:56:18,175 --> 04:56:24,319 In the second row SQL injection Supply data is 1092 04:56:24,575 --> 04:56:30,719 It installed in the one place and then at the latest which it is extracted from the database 1093 04:56:30,975 --> 04:56:34,559 Resident Evil Canon in D 1094 04:56:35,071 --> 04:56:41,215 So If You're the Inspiration Point is different and distribution point is different 1095 04:56:41,471 --> 04:56:42,751 Sophia 1096 04:56:43,007 --> 04:56:49,151 The Doom that was once while able to Second injection and that is CV 2018 6376 1097 04:56:49,407 --> 04:56:55,551 And we are liking a sticky situation 1098 04:56:55,807 --> 04:57:01,951 Public buses are available so how do we convince a client that you are using the volleyball version of June. 1099 04:57:02,207 --> 04:57:08,351 Research the same 1100 04:57:08,607 --> 04:57:14,751 The research that you've seen in PSG 1101 04:57:15,007 --> 04:57:21,151 And identify Hobbits palatable second Odessa prediction 1102 04:57:23,199 --> 04:57:29,343 Show you the demo Dante's in in the latest side but first let's understand what is 1103 04:57:30,367 --> 04:57:36,511 First let me explain this violation 1104 04:57:36,767 --> 04:57:42,911 The first page allow us to upload 1105 04:57:43,167 --> 04:57:49,311 Okay so let's hear Jakarta 1106 04:57:49,567 --> 04:57:55,711 Upload speed straight of injected today 1107 04:57:55,967 --> 04:58:02,111 If you go to BHP which which will force-feed them put that is injected by the user on the Step2 1108 04:58:02,367 --> 04:58:08,511 Then it will pass this information to be unsafe very 1109 04:58:09,535 --> 04:58:15,679 And that's what it's volleyball to suck secondary SQL injection 1110 04:58:15,935 --> 04:58:22,079 Step-by-step to but it's not step2step. 1111 04:58:22,335 --> 04:58:28,479 Step 4 because it's not only to read the information from the database but it also needs to pass 1112 04:58:28,735 --> 04:58:32,319 2D Concepts wedding registry for 1113 04:58:33,087 --> 04:58:39,231 No nuts understand what is out of an expedition as we all know there's something what happened 1114 04:58:39,487 --> 04:58:45,631 Anyting in the response and we are unable to identify this is 1115 04:58:45,887 --> 04:58:52,031 Okay so here in deceitful injection 1116 04:58:52,287 --> 04:58:58,431 Where does the default function and using this we can simply do this we can identify whether the equation is 1117 04:58:58,687 --> 04:59:04,831 Valerie 1118 04:59:05,087 --> 04:59:11,231 The default function and defaults or procedure allow available 1119 04:59:11,487 --> 04:59:17,631 PB tobacco database which basically allows to do that and one such example of 1120 04:59:17,887 --> 04:59:24,031 Expedia-aarp within domestic ball which basically candy 1121 04:59:24,287 --> 04:59:30,431 Be used for multiple purposes such as listing of filing directory or to make a note upon request invite 1122 04:59:30,687 --> 04:59:36,831 I dream that we are able to identify that 1123 04:59:37,343 --> 04:59:43,487 Give me the alley there is a 4-1 function that is available within the misek but Android is low 1124 04:59:43,743 --> 04:59:49,887 5th also allow us to load the file from the remote location 1125 04:59:50,143 --> 04:59:56,287 Trb UNC pot IP Android 1126 04:59:56,543 --> 05:00:02,687 Texas TABC Chef that is available 1127 05:00:02,943 --> 05:00:09,087 Spino to The Vape Shop application and if the back injection it's try to connect 1128 05:00:09,343 --> 05:00:15,487 I pee and it will send the ntlm version 1 and version 2 1129 05:00:15,743 --> 05:00:21,887 During the connection and then 1130 05:00:22,143 --> 05:00:28,287 What is Simply Red Lady Antebellum version one and version two houses to access the box that is dead in Dubai 1131 05:00:28,543 --> 05:00:34,687 An environment of the backend application 1132 05:00:34,943 --> 05:00:41,087 Taken kept simply capture this until inversion white inversion classes and try to crack it offline using 1133 05:00:41,343 --> 05:00:47,487 And if necessary support identified appendix information than he can simply me 1134 05:00:47,743 --> 05:00:53,887 So he had to be stranded out next exercise Belleville to perform the second 1135 05:00:54,143 --> 05:00:58,239 Identify second motorcycle injection using our account 1136 05:00:58,495 --> 05:01:04,639 Injection to extract the name of the user running the cervix 1137 05:01:04,895 --> 05:01:11,039 Accounts that security question 1138 05:01:11,295 --> 05:01:17,439 Please keep in mind that the insertion point is different and the execution point is stupid 1139 05:01:17,695 --> 05:01:23,839 And the challenge URL secret security question exhibition point 1140 05:01:24,095 --> 05:01:30,239 5 inch action point where you able to inject certain information which is 1141 05:01:30,495 --> 05:01:36,639 And this information then 1142 05:01:36,895 --> 05:01:43,039 Security question elective process and you can simply 1143 05:01:43,295 --> 05:01:49,439 Exercise 1144 05:01:49,695 --> 05:01:55,839 But still let me give you a 10 minutes to play with this exercise then I'll give you a time then I'll give you a walkthrough 1145 05:01:56,095 --> 05:02:00,959 And then again I'll give your time to complete this one 1146 05:02:01,471 --> 05:02:07,615 I believe this concept is. If you have any question can simply automated 1147 05:02:07,871 --> 05:02:09,407 Question 1148 05:02:20,671 --> 05:02:21,695 Sol 1149 05:04:04,095 --> 05:04:09,215 Get the hint you can simply leave the question within the pole section 1150 05:11:57,695 --> 05:12:03,839 It's difficult right only one person is computer disk 1151 05:12:05,887 --> 05:12:11,519 And it looks like some of your identified in point and deposition point as well 1152 05:12:11,775 --> 05:12:17,663 So let me walk with you. 1153 05:12:17,919 --> 05:12:24,063 Yeah. Up. Account 1154 05:12:24,319 --> 05:12:30,463 90 will identify 1155 05:12:38,143 --> 05:12:44,287 What time do I just open up 1156 05:12:46,591 --> 05:12:48,383 Looking 1157 05:12:48,895 --> 05:12:51,455 Forgot password 1158 05:13:00,415 --> 05:13:03,487 No 1159 05:13:06,815 --> 05:13:09,631 Alexis captured information 1160 05:13:33,183 --> 05:13:35,743 Let me 1161 05:13:37,791 --> 05:13:43,935 Reset password 1162 05:13:44,191 --> 05:13:50,335 Ask a question and this is Beyonce 1163 05:13:50,591 --> 05:13:56,735 Using it only passes the answer information it will not pass screw question that means 1164 05:13:56,991 --> 05:14:00,575 Checking the answer 1165 05:14:01,599 --> 05:14:07,743 Of the particular user 1166 05:14:07,999 --> 05:14:11,327 Question 1167 05:14:11,583 --> 05:14:17,727 Okay so far 1168 05:14:17,983 --> 05:14:19,775 Support 1169 05:14:20,031 --> 05:14:26,175 Then simply go to profile page 1170 05:14:26,431 --> 05:14:32,575 I just mentioned over here 1171 05:14:46,143 --> 05:14:52,287 Please sleep 1172 05:14:52,543 --> 05:14:58,687 And second list update information updated 1173 05:14:58,943 --> 05:15:05,087 Welcome the same process 1174 05:15:05,343 --> 05:15:11,487 Password answering security question 1175 05:15:12,511 --> 05:15:18,655 Sanjay dutt nssf 1176 05:15:18,911 --> 05:15:25,055 Text information from the back-end database 1177 05:15:25,311 --> 05:15:31,455 Security password 1178 05:15:31,711 --> 05:15:37,855 Oxycodone electrologist 1179 05:15:38,111 --> 05:15:44,255 Let's apply this 1180 05:15:44,511 --> 05:15:48,607 Epicenter 1181 05:15:49,119 --> 05:15:55,263 Stead 1182 05:15:55,519 --> 05:15:59,103 Let's check how many time it goes into Wayne State 1183 05:16:09,343 --> 05:16:13,951 Who's interested more than 10 seconds 1184 05:16:15,487 --> 05:16:21,631 So bye-bye by analyzing this 1185 05:16:21,887 --> 05:16:28,031 Second-order sequel injection weather changes in point is to help your page and then 1186 05:16:28,287 --> 05:16:34,431 So what weekend do we just use this profile update page 2 1187 05:16:34,687 --> 05:16:40,319 Where is to perform different different 1188 05:16:44,415 --> 05:16:50,559 No the next thing we have to do is be able to make an out-of-bounds call 1189 05:16:52,351 --> 05:16:58,495 I'm using the divorce procedure and that is XP Dr remastered XP 1190 05:16:58,751 --> 05:17:02,591 And I'm using this 1191 05:17:09,247 --> 05:17:15,391 Close the previous value 1192 05:17:17,183 --> 05:17:23,327 And then I want to execute the default stroke or she said that is available within the 1193 05:17:23,583 --> 05:17:26,911 Expedia tree 1194 05:17:27,423 --> 05:17:33,567 And for that I want to call 1195 05:17:33,823 --> 05:17:39,967 Stop domain name is SQL injection. 1196 05:17:40,223 --> 05:17:45,343 That's coming out rest of the information 1197 05:17:47,135 --> 05:17:51,743 Let me taste it over here 1198 05:17:54,559 --> 05:18:00,703 Not working we can follow the same operation in order to execute the SQL injection 1199 05:18:01,471 --> 05:18:03,775 Aldi updated 1200 05:18:10,687 --> 05:18:15,807 Let's just started 1201 05:18:18,623 --> 05:18:24,767 You stupid dumb and ugly people. 1202 05:18:25,023 --> 05:18:29,375 53 + 1203 05:18:29,631 --> 05:18:32,447 And let's send request 1204 05:18:34,751 --> 05:18:40,895 The woman who sent the request request information from the back 1205 05:18:41,151 --> 05:18:47,295 Fastest information into an enhancer 1206 05:18:47,551 --> 05:18:53,695 I'm using now 1207 05:18:53,951 --> 05:19:00,095 Molarity the next India 25 user so how do we identify that 1208 05:19:00,351 --> 05:19:06,495 Call back I want to try this particular, 1209 05:19:11,359 --> 05:19:17,503 And that is system user I just forwarded the single quotes 1210 05:19:17,759 --> 05:19:23,903 WWE 1211 05:19:24,159 --> 05:19:30,303 Which has a value less than 10 1212 05:19:30,559 --> 05:19:36,703 No variable assistant 1213 05:19:36,959 --> 05:19:38,239 User 1214 05:19:39,007 --> 05:19:45,151 Navigation system user 1215 05:19:45,407 --> 05:19:51,551 Information within this data variable now again I'm running 1216 05:19:51,807 --> 05:19:57,951 Expedia tree to make an outer banks call 99 1217 05:19:58,207 --> 05:20:04,351 Darkweb.com in here I'm just passing 1218 05:20:11,007 --> 05:20:17,151 Copy this information using 1219 05:20:17,919 --> 05:20:19,455 Update this 1220 05:20:19,711 --> 05:20:25,343 Go back to the ocean 1221 05:20:26,367 --> 05:20:32,511 Let's begin popcorn Depot 1222 05:20:35,839 --> 05:20:41,983 Is he able to read information that you updated 1223 05:20:42,239 --> 05:20:48,383 The bus for into reset password 1224 05:20:52,223 --> 05:20:58,367 Intown topalko and username using which is 1225 05:21:01,439 --> 05:21:07,583 Now this is the highest 1226 05:21:14,239 --> 05:21:20,383 Check weather to buy doxycide window. Not okay 1227 05:21:20,639 --> 05:21:26,783 Doing the same thing 1228 05:21:27,039 --> 05:21:33,183 WWE spreading 1229 05:21:33,439 --> 05:21:39,583 In the system user information please check the server role member or let sit 1230 05:21:39,839 --> 05:21:43,679 User is Depart of administer all are not 1231 05:21:43,935 --> 05:21:50,079 This particular function respond with two or false if the perimeter is the part of see Sandman 1232 05:21:50,335 --> 05:21:55,711 Who invented return true if it start then it returned 1233 05:21:55,967 --> 05:22:02,111 Dead again Century Learning the Expedia restore procedure 1234 05:22:02,367 --> 05:22:08,511 NTR I'm just making it out of pan called 1235 05:22:08,767 --> 05:22:14,911 Instead of data here we are passing the server role 1236 05:22:15,167 --> 05:22:20,799 Member function output 1237 05:22:26,687 --> 05:22:29,759 Apply the same question over here 1238 05:22:31,807 --> 05:22:36,159 Again perform the same password 1239 05:22:37,183 --> 05:22:39,231 Many places 1240 05:22:41,791 --> 05:22:44,863 NJ 1241 05:22:45,119 --> 05:22:47,935 And it says next 1242 05:22:49,471 --> 05:22:51,519 1234 1243 05:22:52,031 --> 05:22:54,079 It's learning 1244 05:22:58,687 --> 05:23:04,831 Respond with to that means this particular as a user is apart of Seaside Montara 1245 05:23:05,087 --> 05:23:11,231 It's the highest 1246 05:23:11,487 --> 05:23:17,631 Civil Division 1247 05:23:24,287 --> 05:23:30,431 I'm just reconfigure the advanced options supplies Rio 2 1248 05:23:37,855 --> 05:23:43,999 So executing dxp configure and let's say using this 1249 05:23:44,255 --> 05:23:50,399 Advanced options and making it to True again reconsider 1250 05:23:50,655 --> 05:23:56,799 Without doing a restart again 1251 05:23:57,055 --> 05:24:03,199 Anybody using which device become an execution capability 1252 05:24:03,455 --> 05:24:05,503 Copy this information 1253 05:24:06,271 --> 05:24:12,415 Now this particular operation which to-do on the ones within the eraser 1254 05:24:12,671 --> 05:24:18,047 If I would under that means it's enabled for everyone 1255 05:24:20,607 --> 05:24:23,679 If 1256 05:24:31,359 --> 05:24:36,223 Read my username 1257 05:24:49,279 --> 05:24:55,423 Now it's give us a capability to run this system. 1258 05:24:56,447 --> 05:25:02,591 Our next challenge is to extract the username 1259 05:25:02,847 --> 05:25:08,991 I'm just using this Expedition resale 1260 05:25:09,247 --> 05:25:15,391 Not sure I'm running to command. EXE 1261 05:25:15,647 --> 05:25:21,792 This site utilities up 1262 05:25:22,048 --> 05:25:28,192 Play the station 1263 05:25:28,448 --> 05:25:34,592 Routine has a specific parameter Lipsy warrant gas 1264 05:25:34,848 --> 05:25:40,992 Remote location and this URL Cash 4 1265 05:25:41,248 --> 05:25:47,392 Latitude Expedition 1266 05:25:47,648 --> 05:25:51,744 Location and part of the remote location is this 1267 05:25:52,768 --> 05:25:55,072 99 1268 05:25:56,352 --> 05:25:58,912 Information 1269 05:26:02,752 --> 05:26:05,824 Beach between our insertion point 1270 05:26:06,848 --> 05:26:12,992 It's updated using an outbound connection to the http 1271 05:26:13,248 --> 05:26:19,392 So what and that is 192168 4.99 40,000 1272 05:26:19,648 --> 05:26:22,208 Username information 1273 05:26:26,560 --> 05:26:29,632 And now let's excuse to come on 1274 05:26:29,888 --> 05:26:31,936 Alex 1275 05:26:32,704 --> 05:26:38,592 What's from the recent past surpluses again that we are saved 1276 05:26:42,176 --> 05:26:46,016 Excluded 1277 05:26:47,040 --> 05:26:53,184 At the moment we send this connection 1278 05:26:53,440 --> 05:26:59,584 Username using which this data services 1279 05:27:02,400 --> 05:27:08,544 So this is how once you he'll identify discipline YouTube 1280 05:27:08,800 --> 05:27:14,944 Insertion point and execution point 1281 05:27:15,200 --> 05:27:21,344 Using which this 1282 05:27:21,600 --> 05:27:27,744 If it's a part of this admin then you can simply 1283 05:27:28,000 --> 05:27:34,144 Real command execution capability 1284 05:27:34,400 --> 05:27:40,544 Is there any question question or you can simply post your question. 1285 05:27:40,800 --> 05:27:45,664 So what 1286 05:27:46,176 --> 05:27:52,320 25 minutes because it's kind of a text to 1287 05:27:52,576 --> 05:27:58,720 A bunch of 1288 05:28:00,000 --> 05:28:06,144 So are the best exercise please 1289 05:40:59,008 --> 05:41:03,104 Once you completed exercise please update the polling Channel Jenner 1290 05:41:04,128 --> 05:41:08,480 If you have any doubt in simply English underpowered soccer channel 1291 05:41:09,248 --> 05:41:15,392 You can also take a walk through on the 1292 05:41:15,648 --> 05:41:20,256 Portal 1293 05:49:25,888 --> 05:49:31,520 Once you complete with dick size please update the board International so we can move forward 1294 05:52:52,480 --> 05:52:58,624 It looks like most of your computer this one completely this one please do not worry 1295 05:53:05,280 --> 05:53:11,424 23 1296 05:53:11,680 --> 05:53:17,824 Interaction is required to transfer information from one application to another application 1297 05:53:18,080 --> 05:53:24,224 The Back-up Plan process we have seen such kind of example 1298 05:53:24,480 --> 05:53:30,624 Know if the infection infant is exposed to that occurred that article can still be 1299 05:53:30,880 --> 05:53:37,024 Able to craft a payload 1300 05:53:37,280 --> 05:53:43,424 Expenses 1301 05:53:43,680 --> 05:53:49,824 And someone will respond within 234 1302 05:53:50,080 --> 05:53:56,224 Application for the validation 1303 05:53:56,480 --> 05:54:02,624 The second application application 1304 05:54:02,880 --> 05:54:09,024 Example of this is leprechaun multiplication entertainment 1305 05:54:09,280 --> 05:54:15,168 This message then process your order 1306 05:54:15,424 --> 05:54:21,568 Some here just let me explain this polish station to here 1307 05:54:21,824 --> 05:54:27,968 Initiated a process within this provided our payment card information list 1308 05:54:28,224 --> 05:54:34,368 Multiplication this information 1309 05:54:34,624 --> 05:54:40,768 Send today, Ocean First 1310 05:54:41,024 --> 05:54:47,168 Then this into the data 2:10 de payment 1311 05:54:47,424 --> 05:54:53,568 Payment Gateway process the payment that is dead within using the details 1312 05:54:53,824 --> 05:54:59,968 7th and encrypted data is informational status message back today 1313 05:55:00,224 --> 05:55:03,552 Application process your order 1314 05:55:03,808 --> 05:55:09,952 Egyptian to cryptography 1315 05:55:10,208 --> 05:55:16,352 Let me explain things interesting scenario idea 1316 05:55:16,608 --> 05:55:22,752 Uses Alexa to order indignant redundant code that uses the same encryption 1317 05:55:23,008 --> 05:55:29,152 Function for different different processes listed their created 1318 05:55:29,408 --> 05:55:35,552 Encrypt and decrypt now whenever they want 20 to 30 today simply called 1319 05:55:35,808 --> 05:55:41,952 Function bankrupt 1320 05:55:42,208 --> 05:55:48,352 Implemented the encryption and decryption process 1321 05:55:48,608 --> 05:55:54,752 Play the album everything is the same for the entire application to order it 1322 05:55:55,008 --> 05:55:56,800 Tendency of the core 1323 05:55:57,056 --> 05:56:03,200 This is somehow if you're able to identify 1324 05:56:03,456 --> 05:56:09,600 Basically respond with interpret data provided in the request 1325 05:56:09,856 --> 05:56:16,000 Somehow somehow people are able to identify which except into data and 1326 05:56:16,256 --> 05:56:22,400 The backend performed application 1327 05:56:22,656 --> 05:56:28,800 Welcome to SQL injection to cryptography using 1328 05:56:29,056 --> 05:56:35,200 Register email account encryption and point to confirm SQL injection 1329 05:56:35,456 --> 05:56:41,600 Stop order 1330 05:56:41,856 --> 05:56:48,000 Account 1331 05:56:48,256 --> 05:56:54,400 Please do not use your credit card information. 1332 05:56:54,656 --> 05:56:58,496 Information Okay so 1333 05:56:58,752 --> 05:57:04,896 Let me give you a damn without this 1334 05:57:06,944 --> 05:57:13,088 I'm doing the login 1335 05:57:13,344 --> 05:57:19,488 2525 1336 05:57:19,744 --> 05:57:25,888 Map each and every processes where 1337 05:57:26,144 --> 05:57:32,288 Respond within which you up first and then 1338 05:57:32,544 --> 05:57:38,688 Map each and every function which basically except into the data 1339 05:57:38,944 --> 05:57:44,320 So I'm bring the Locking over here 1340 05:57:54,048 --> 05:58:00,192 Know the moment you go to this interview eat 1341 05:58:00,448 --> 05:58:06,592 Completed every untidy 1342 05:58:06,848 --> 05:58:09,152 Go to mobile 1343 05:58:09,664 --> 05:58:11,200 Order 1344 05:58:13,248 --> 05:58:16,576 Scioscia 1345 05:58:16,832 --> 05:58:19,136 No it's me quickly 1346 05:58:19,904 --> 05:58:26,048 Frozen filippi closest let me run this town 1347 05:58:26,560 --> 05:58:31,424 So you're already locked in coffee 10 to watch 1348 05:58:31,936 --> 05:58:35,520 Pompatus 1349 05:58:39,616 --> 05:58:41,152 Go to mobile 1350 05:58:43,200 --> 05:58:49,344 Order 1351 05:58:49,600 --> 05:58:53,440 Viaquest and respond both okay 1352 05:58:55,488 --> 05:59:01,632 Same to set intercept is on 1353 05:59:01,888 --> 05:59:08,032 Sending this request signature 1354 05:59:12,128 --> 05:59:18,272 No to analyze the response using the code is looking like it's temperature 1355 05:59:18,528 --> 05:59:22,880 Data that means this is the particular a beach basically 1356 05:59:30,048 --> 05:59:36,192 So we are able to identify 10.6 basically encrypted data for us 1357 05:59:36,448 --> 05:59:37,984 Identify 1358 05:59:38,496 --> 05:59:44,640 The endpoint which basically accept the encrypted value 1359 05:59:45,920 --> 05:59:49,504 This 1360 05:59:50,528 --> 05:59:54,624 Let's open this into a new tab 1361 05:59:55,904 --> 06:00:02,048 Latest performance of operational 1362 06:00:02,560 --> 06:00:08,704 Does spam information on 231231 1363 06:00:09,984 --> 06:00:16,128 123 123 1364 06:00:23,296 --> 06:00:27,392 Page 1365 06:00:27,648 --> 06:00:33,792 Okay do identify the endpoint 1366 06:00:36,864 --> 06:00:43,008 What if you don't identify. And then you can simply go to the mailbox mailbox 1367 06:00:50,176 --> 06:00:56,320 I have to use the public mailbox 1368 06:00:56,576 --> 06:01:02,720 Place any order you will see that I listen to acid or two emails the first one is the order 1369 06:01:02,976 --> 06:01:09,120 Confirmation and the second Wednesday payment 1370 06:01:09,376 --> 06:01:15,520 Hi Sandra. This is kind of name that we have deceived 1371 06:01:15,776 --> 06:01:18,080 Does not contain anything 1372 06:01:18,336 --> 06:01:24,480 Hey email 1373 06:01:24,736 --> 06:01:30,880 Information but has money link it says that you not your order has been processed and is now 1374 06:01:31,136 --> 06:01:34,208 Your daughter has been received and is now in process 1375 06:01:34,464 --> 06:01:39,584 Condense this particle 1376 06:01:57,504 --> 06:02:03,648 I hear it's sending this particular request first which has included 1377 06:02:03,904 --> 06:02:06,976 30 Peter first 1378 06:02:07,232 --> 06:02:09,280 The second thing 1379 06:02:12,352 --> 06:02:18,496 Make an API request 1380 06:02:18,752 --> 06:02:24,896 Also contained a plantation 1381 06:02:25,152 --> 06:02:28,992 Except 1382 06:02:29,248 --> 06:02:35,392 No as I mentioned indelible generally use the common processes or let's say common methods 1383 06:02:35,648 --> 06:02:41,792 Auto-Ordnance 1384 06:02:42,048 --> 06:02:48,192 Used the same encryption function. Back and most of the time 1385 06:02:48,448 --> 06:02:54,592 In the back and then using the first and Point open 2020 1386 06:02:54,848 --> 06:03:00,992 It's a plain text Tita and identified into perform of that and then we can simply Supply 1387 06:03:01,248 --> 06:03:07,392 Bi-Lo in this 22nd 1388 06:03:14,304 --> 06:03:15,584 Speed for today 1389 06:03:23,776 --> 06:03:29,920 So let me try first 1390 06:03:30,944 --> 06:03:32,992 So can I go to Taco 1391 06:03:33,248 --> 06:03:35,040 Ultra Mobile 1392 06:03:35,552 --> 06:03:37,344 Order 1393 06:03:38,624 --> 06:03:41,952 Roland Martin 1394 06:03:43,744 --> 06:03:49,632 And I want them to indent on 1395 06:03:50,656 --> 06:03:55,520 It will pass this information 1396 06:03:56,288 --> 06:04:02,432 And you see it just respond within 2 performance 1397 06:04:02,688 --> 06:04:08,832 Let's check whether it's accepted party 1398 06:04:09,088 --> 06:04:15,232 Ghostbusters with info standpoint that order 1399 06:04:15,744 --> 06:04:21,888 And send this new sea with deported or until May 2nd 1400 06:04:22,144 --> 06:04:28,288 This is not what this song 1401 06:04:28,544 --> 06:04:32,640 Boston put into an sap query 1402 06:04:32,896 --> 06:04:39,040 Golden State win 1403 06:04:39,296 --> 06:04:45,440 Send this in this all attempted to detain this transition Alabama 1404 06:04:45,696 --> 06:04:51,840 Alex shape but having time is it goes into using is exactly 1405 06:04:52,096 --> 06:04:58,240 Goes into a bedstead like Templeton Ms that's what are all this about 1406 06:04:58,496 --> 06:05:04,640 10 second 10 second 1407 06:05:04,896 --> 06:05:06,944 The next English BO2 1408 06:05:07,200 --> 06:05:09,760 Get letter 1409 06:05:10,016 --> 06:05:16,160 Let's have YouTube 1410 06:05:16,416 --> 06:05:22,560 Exercise like to obtain the current username can you detect whether it's a part of the season 1411 06:05:29,216 --> 06:05:35,360 Okay then you can simply Randy system-level commands 1412 06:05:36,128 --> 06:05:42,272 Now it's in the back and despotic 1413 06:05:42,528 --> 06:05:48,672 Music that is now the part of which is a part of the Seaside menu 1414 06:05:48,928 --> 06:05:55,072 Let's directly run this PC because we already enabled 1415 06:05:55,328 --> 06:06:01,472 And there is no need to do it again 1416 06:06:01,728 --> 06:06:07,872 I'm just using the previous query query running 1417 06:06:08,128 --> 06:06:14,272 And I want to run 1418 06:06:14,528 --> 06:06:20,672 And it's basically bacon out the DNS request to use a 99 and here 1419 06:06:20,928 --> 06:06:24,256 Sqlite. 1420 06:06:25,280 --> 06:06:29,120 The moment Vicente stata 1421 06:06:29,888 --> 06:06:36,032 The first wheel to open encrypted version of this particle 1422 06:06:36,288 --> 06:06:42,432 Fix data supported I'm doing intercept is on us I already passed my command 1423 06:06:42,688 --> 06:06:48,832 Or apply and it just respond with d 1424 06:06:49,088 --> 06:06:51,904 Data 1425 06:06:52,672 --> 06:06:58,560 First 1426 06:06:59,328 --> 06:07:03,936 All the unused one 1427 06:07:11,360 --> 06:07:17,504 N95 1428 06:07:17,760 --> 06:07:23,392 Industry Club 1429 06:07:23,904 --> 06:07:24,928 That 1430 06:07:37,984 --> 06:07:44,128 So this is how 1431 06:07:44,384 --> 06:07:50,528 Knowledge that the endpoint with basically created 1432 06:07:50,784 --> 06:07:56,928 Us and using this into today. If you're able to identify other endpoint 1433 06:07:57,184 --> 06:08:03,328 Physically except inputs on The Blind Side 1434 06:08:03,584 --> 06:08:09,216 Simply crafts 1435 06:08:09,728 --> 06:08:15,872 So anyone has any questioning this 1436 06:08:16,128 --> 06:08:20,480 Anyone 1437 06:08:20,736 --> 06:08:26,880 Okay so with that said be done with hearty three of the training what I do 1438 06:08:27,136 --> 06:08:33,280 Open this channel 45 minutes we can simply go through each and every topic 1439 06:08:33,536 --> 06:08:39,680 If you have any questions about any of the topic you can simply ask the question 1440 06:08:39,936 --> 06:08:46,080 And if you do not have any questions then you can simply drop off some distant Ana 1441 06:08:46,336 --> 06:08:52,480 You can also go through this topics that will cover today after this training and Beyond 1442 06:08:52,736 --> 06:08:58,880 Simply connect RV will start painting 1443 06:08:59,136 --> 06:09:05,280 So you can simply join 30 minutes before this training start again is that you're very in-depth 1444 06:09:07,328 --> 06:09:13,472 Let me open up this let me start the timer for 5 minutes 1445 06:09:13,728 --> 06:09:16,288 Send it 1446 06:09:29,600 --> 06:09:35,744 I believe everyone has like the content of D3 I hope you enjoyed the content of 1447 06:10:23,360 --> 06:10:25,408 Sexy games 1448 06:10:46,912 --> 06:10:48,192 Thank you Sharon 1449 06:14:13,504 --> 06:14:16,832 But I think you'll so much weight loss results 1450 06:14:17,856 --> 06:14:19,392 M71