Cookie Stealing & CSRF Attacks Explained - TryHackMe What's Your Name (3 Methods)
🔥 Learn how to exploit XSS vulnerabilities in web applications to steal cookies and bypass authentication in this complete TryHackMe walkthrough. I'll show you three different client-side attack techniques to compromise the "What's Your Name" room! In this hands-on web application pentesting tutorial, you'll learn: How to identify and exploit Cross-Site Scripting (XSS) vulnerabilities in registration forms Cookie stealing techniques using malicious JavaScript payloads Password change exploitation through XSS injection Cross-Site Request Forgery (CSRF) attacks with Base64 encoding Real-world enumeration with Nmap and directory brute-forcing Three complete exploitation methods from recon to admin access ⏱️ Timestamps 00:00 Introduction 00:44 Enumeration 10:17 Flag 2.1 14:18 Flag 2.2 17:20 Flag 2.3 🔗 Resources & Further Reading TryHackMe "What's Your Name" Room: https://tryhackme.com/room/whatsyourname Full Web App Pentesting Playlist:    • TryHackMe - Web App Pentesting  Written Blog Post with Payloads: https://www.hqphu.com/posts/tryhackme... 💡 This room is part of the TryHackMe Web Application Pentesting learning path - perfect for aspiring ethical hackers looking to master client-side attacks! Don't forget to LIKE this video, SUBSCRIBE for weekly cybersecurity tutorials, and COMMENT with your questions or what TryHackMe room you'd like me to cover next! #TryHackMe #XSS #WebAppPentesting #EthicalHacking #Cybersecurity #CSRF #InfoSec #BugBounty

But what is a Laplace Transform?

Websockets Request Smuggling — TryHackMe Walkthrough

APIs for Beginners - How to use an API (Full Course / Tutorial)

How Hackers Actually Chain Tools Together (Nmap, Dirb, Wireshark)

DOM-Based Attacks — TryHackMe Walkthrough

learning hacking? DON'T make this mistake!! (hide yourself with Kali Linux and ProxyChains)

Complete Website Enumeration with FFUF (Full Tutorial for Beginners)

How to Build & Sell AI Agents: Ultimate Beginner’s Guide

OpenClaw: The Viral AI Agent that Broke the Internet - Peter Steinberger | Lex Fridman Podcast #491

Cross-site Requests Forgery — TryHackMe Walkthrough

Linux for Hackers Tutorial (And Free Courses)

How Hackers Use Burp Suite to Get Into Websites

The Unity Tutorial For Complete Beginners

How To Learn Hacking - A Practical Demo
![[TryHackMe -- Web App PenTest] --- Multi-Factor Authentication](https://i.ytimg.com/vi/rLX9ZtJTN9g/hqdefault.jpg?sqp=-oaymwEjCNACELwBSFryq4qpAxUIARUAAAAAGAElAADIQj0AgKJDeAE=&rs=AOn4CLAHXitwKdXENBIsniYB1k0lB-C73w)
[TryHackMe -- Web App PenTest] --- Multi-Factor Authentication

Passkeys SUCK (here’s why + how I use them)

The Complete Web Development Roadmap

This is How Hacking Is Actually Practiced

the hacker’s roadmap (how to get started in IT in 2025)

