1 00:00:00,450 --> 00:00:05,090 So, guys, in this video, we're going to talk about the basics of food and also we look at this madness. 2 00:00:05,850 --> 00:00:08,820 Of course, this man inspiring is not a very different topic. 3 00:00:09,480 --> 00:00:16,770 First, let me go to Firefox and set up this proxy to the bar so we can try this Foxy Knoxy from the 4 00:00:16,770 --> 00:00:17,550 previous floor. 5 00:00:18,030 --> 00:00:20,900 And I had just turned on this connection to the bar. 6 00:00:21,720 --> 00:00:24,540 You can see here, let me preconditioned. 7 00:00:25,290 --> 00:00:25,920 So what? 8 00:00:25,920 --> 00:00:27,380 This is it. 9 00:00:27,600 --> 00:00:34,290 These the brother request will be displayed here and you can edit as you want and then you can send 10 00:00:34,290 --> 00:00:36,580 it to the Web server. 11 00:00:36,810 --> 00:00:38,170 So let me show you. 12 00:00:39,420 --> 00:00:41,290 So let me go on this, don't you? 13 00:00:41,670 --> 00:00:45,390 There is a local college in my state. 14 00:00:46,140 --> 00:00:52,650 So know the page won't read because the request has been captured by a person because the intercept 15 00:00:52,650 --> 00:00:52,980 is on. 16 00:00:53,250 --> 00:00:59,220 What you can do is you can forward this request to the destination or you can drop this request, deleting 17 00:00:59,220 --> 00:01:01,520 the request and you can also open it. 18 00:01:01,600 --> 00:01:08,280 Brother, let me click on this forward and it will ask so many requests because it's Google. 19 00:01:10,020 --> 00:01:14,640 So simply, you are the father and you can see the page will be loaded here. 20 00:01:15,770 --> 00:01:19,760 So, OK, we need to I think that's it. 21 00:01:21,640 --> 00:01:23,030 So still, it's not ready. 22 00:01:23,920 --> 00:01:32,320 So let me so this Google brother will do, there are so many requests, so I'll just Tannadice Interceptive 23 00:01:32,320 --> 00:01:33,700 and you see the website Rody. 24 00:01:45,480 --> 00:01:48,510 You know, I am not getting the websites. 25 00:01:51,600 --> 00:01:54,320 Soccer opened in a Newtown. 26 00:01:58,020 --> 00:01:58,620 All right. 27 00:02:13,270 --> 00:02:14,740 Let's open another Web site. 28 00:02:21,670 --> 00:02:25,930 Well, that was certainly not working out, is she not, Ragman website? 29 00:02:27,570 --> 00:02:32,030 And the record here in Studio three tab. 30 00:02:33,520 --> 00:02:40,930 I can see the history of the war because we can start using the time also. 31 00:02:42,830 --> 00:02:48,920 As you can see, if out this time the most recent course would be on the up. 32 00:02:49,340 --> 00:02:55,550 So after getting that Ragman request, it also got some font's and other content from other websites. 33 00:02:59,340 --> 00:03:06,390 So what we can do is you can see the request here, the number of requests, uh, and the hostname and 34 00:03:06,390 --> 00:03:14,460 the matter, which is the GDP request matter and the order to the destination and the parameters, there 35 00:03:14,460 --> 00:03:23,280 are any parameters to be checked and the status will not one and the length of the request and you can 36 00:03:23,280 --> 00:03:24,820 see the IP address and so on. 37 00:03:24,820 --> 00:03:26,670 So there is so much information going on. 38 00:03:26,920 --> 00:03:30,810 You can see the detailed information of this request and response. 39 00:03:32,200 --> 00:03:39,700 So can see get to the socket that I will hold to the region to accept, accept and accept language, 40 00:03:39,700 --> 00:03:46,950 etc., there is information about my station and also there is a response which we got from the. 41 00:03:49,850 --> 00:03:50,420 And. 42 00:03:52,380 --> 00:03:59,170 So this is the requestion response, you can watch and watch it for every request, every now and she 43 00:03:59,190 --> 00:03:59,860 will be back. 44 00:04:00,780 --> 00:04:04,620 So it's been considered a request and the response. 45 00:04:07,410 --> 00:04:15,750 So you can also capture the request and you can modify this headers, so let me click on this intercept 46 00:04:15,750 --> 00:04:16,020 on. 47 00:04:18,710 --> 00:04:25,100 So you can see that this should be not one that is that we are asking right next to the horse track, 48 00:04:25,150 --> 00:04:31,940 where you can also change one dot com, maybe, maybe does not exist if you follow this one. 49 00:04:33,000 --> 00:04:33,190 I. 50 00:04:34,700 --> 00:04:35,630 We get for not. 51 00:04:38,180 --> 00:04:46,670 OK, because it's not there in answer we are asking, correct me, one dot com, so let me click on 52 00:04:46,670 --> 00:04:47,420 this. 53 00:04:49,320 --> 00:04:50,820 So now we got the card. 54 00:04:51,630 --> 00:04:58,410 So I just manipulated this the my name to show that we can edit the request and the response she got, 55 00:04:58,920 --> 00:05:04,470 which you can see there is a track we will not call the what if this one. 56 00:05:11,020 --> 00:05:18,060 OK, no, we can try this, you can see we can see particular parameters and you can also see Harrison 57 00:05:18,160 --> 00:05:19,210 hexadecimal values. 58 00:05:19,720 --> 00:05:24,290 So that's what this proxy and you know, we are going to see the target. 59 00:05:25,840 --> 00:05:27,910 So as you can see, there are so many domains. 60 00:05:27,910 --> 00:05:31,660 We are we still aren't sending the GDP data to track. 61 00:05:31,700 --> 00:05:37,210 Meet has sent some request to some other websites to get the finance and other data. 62 00:05:37,600 --> 00:05:44,090 So what you can do is you can add the particular interest domains to the scope. 63 00:05:44,320 --> 00:05:51,310 So what this could mean is you are actually adding subdomains to the scope and you are interested only 64 00:05:51,310 --> 00:05:52,540 in that scope items. 65 00:05:53,050 --> 00:06:00,160 So it will be easy to filter worktop are what the winds are relative to your interest. 66 00:06:00,580 --> 00:06:04,130 Now you need to go to the scope and you can add your order here. 67 00:06:04,540 --> 00:06:12,070 One of the best ways to click on this and click on Add to Scope and you can use and you might react, 68 00:06:12,070 --> 00:06:16,330 may not come easily to score know to filter only the scope. 69 00:06:16,660 --> 00:06:17,770 I need to click on this. 70 00:06:18,430 --> 00:06:27,460 It will say some filter options to show you and you can see where I can click on this show only in scope 71 00:06:27,460 --> 00:06:32,440 items and filtering out is multi internet media extension. 72 00:06:33,070 --> 00:06:34,420 Just actually forgot the name. 73 00:06:35,410 --> 00:06:36,350 So it's extension. 74 00:06:36,520 --> 00:06:39,770 So what do you want to see the first with the seriousness? 75 00:06:40,180 --> 00:06:42,910 Yes, I want to see the seasons and images and so on. 76 00:06:42,940 --> 00:06:44,110 You can also filter that. 77 00:06:44,890 --> 00:06:46,470 You can also check this. 78 00:06:46,480 --> 00:06:52,500 You can also filter for us whether you need to show them to photos or not and then filter before elections. 79 00:06:52,930 --> 00:06:57,190 So federal system is for the pro version and we are not going to see this. 80 00:06:57,580 --> 00:07:05,140 And if I want to show whether BHP Arizpe original or any other person, you need to specify the extension 81 00:07:05,140 --> 00:07:05,420 here. 82 00:07:06,370 --> 00:07:13,510 So if you click on this one, if I click on the stock market and click on this, I would look at all 83 00:07:13,510 --> 00:07:14,920 the other domains. 84 00:07:14,960 --> 00:07:19,280 What I want to do is I'll click on this and click on the show converters. 85 00:07:19,690 --> 00:07:20,700 So do this now. 86 00:07:20,710 --> 00:07:25,000 Everything will be hidden, except I had one dot com. 87 00:07:25,450 --> 00:07:34,020 So if you click on this right arrow Mark, you can see are the photographs of this dot com. 88 00:07:34,240 --> 00:07:38,140 So these are generated when we are asking for that request. 89 00:07:38,470 --> 00:07:44,630 But these are not automatically generated because we need to navigate to distract me. 90 00:07:44,990 --> 00:07:46,110 That is Karmanos. 91 00:07:46,990 --> 00:07:48,190 So I think we're going to login. 92 00:07:50,500 --> 00:07:58,330 And there will be some other, uh, for that is that is a fight that is raging, [REMOVED], go and see 93 00:07:58,330 --> 00:08:04,360 the e-mail and the password and you need to send that to the website. 94 00:08:04,780 --> 00:08:06,720 So this is Amanda spidering. 95 00:08:07,240 --> 00:08:18,220 And if you want to generate so many data to identify some vulnerable, uh, endpoints, you need to 96 00:08:18,220 --> 00:08:25,750 go to every each and everything activities and you need to go to the learning parts network, etc. So 97 00:08:25,750 --> 00:08:34,780 you need to move on to every page and you need to, uh, take care of any vulnerable end points. 98 00:08:34,780 --> 00:08:43,210 And point is nothing but, uh, not a hundred million or not page that does not exist, uh, alone that 99 00:08:43,390 --> 00:08:44,440 you simply don't know. 100 00:08:44,610 --> 00:08:44,890 OK. 101 00:08:48,010 --> 00:08:58,660 So this is the man you need to move around around the website to get some of the data, but there is 102 00:08:58,660 --> 00:09:03,340 a Automator spider spidering that is in the professional of. 103 00:09:03,760 --> 00:09:11,220 So since this is a communication, we do not have this automated crawling or in the community in the. 104 00:09:12,220 --> 00:09:19,690 If you click on this, uh, uh, Automator, smarter than the, uh, spider Lucara for the hour of the 105 00:09:20,170 --> 00:09:23,650 uh, for us and each team ready to go in depth. 106 00:09:23,860 --> 00:09:30,130 And it would give you are the data without you going into that manually for the, uh, things. 107 00:09:30,940 --> 00:09:34,130 So that's, uh, what is automated and, uh. 108 00:09:37,610 --> 00:09:41,660 That's about this Automator spidering and Magna's. 109 00:09:42,390 --> 00:09:50,620 OK, but since we are using this community version, I'm showing you the, uh, this one minus party. 110 00:09:50,840 --> 00:09:56,810 So pretty much you can identify the requestion responses here and you can find any vulnerable, uh, 111 00:09:56,810 --> 00:09:57,850 end points or there. 112 00:09:59,330 --> 00:10:02,600 So you can also see the issue definitions we have. 113 00:10:02,600 --> 00:10:08,670 The order of affordability is here and you can see the description out here like this is good indication. 114 00:10:08,670 --> 00:10:10,890 And I know it's commanding action. 115 00:10:10,940 --> 00:10:16,700 You can see the, uh, response to a description and also the links for their vulnerabilities. 116 00:10:16,700 --> 00:10:17,990 Previous vulnerabilities are the. 117 00:10:19,470 --> 00:10:21,290 So let's talk about this spidering.