CSRF - CSRF where token is tied to non-session cookie

In this lab the CSRF token is once again not tied to the session, however there is still an extra security layer in place. The CSRF token is tied to a cookie that will require a second header injection vulnerability in order to be manipulated. Support This Channel ====================== Please like and subscribe, it means a lot! Check out my cybsercurity and webdev site https://www.webhacks.io Please buy me a coffee so I can continue to make content. https://buymeacoffee.com/zenshell Join our Discord   / discord  

CSRF - Lab #5 CSRF where token is tied to non-session cookie | Short Version
▶︎

CSRF - Lab #5 CSRF where token is tied to non-session cookie | Short Version

CSRF - CSRF where Token is Duplicated in Cookie
▶︎

CSRF - CSRF where Token is Duplicated in Cookie

Your App Is NOT Secure If You Don’t Use CSRF Tokens
▶︎

Your App Is NOT Secure If You Don’t Use CSRF Tokens

CSRF - Samesite Lax Bypass via Cookie Refresh (Learn about OAuth)
▶︎

CSRF - Samesite Lax Bypass via Cookie Refresh (Learn about OAuth)

Why You Should NEVER Disable SELinux
▶︎

Why You Should NEVER Disable SELinux

CSRF - Lab #4 CSRF where token is not tied to user session | Long Version
▶︎

CSRF - Lab #4 CSRF where token is not tied to user session | Long Version

Anthropic is Completely F*cked.
▶︎

Anthropic is Completely F*cked.

CSRF where token is tied to non-session cookie (Video solution, Audio)
▶︎

CSRF where token is tied to non-session cookie (Video solution, Audio)

432Hz - Fall Into Deep Sleep in 3 Minutes, Heal All Damage In The Body and Spirit, Relieve Stress #2
▶︎

432Hz - Fall Into Deep Sleep in 3 Minutes, Heal All Damage In The Body and Spirit, Relieve Stress #2

CSRF Where Token is Not Tied to User Session
▶︎

CSRF Where Token is Not Tied to User Session

【怖いほど当たる】近々あの人から本当に大切な話がある方の目にとまる動画です。
▶︎

【怖いほど当たる】近々あの人から本当に大切な話がある方の目にとまる動画です。

Scandal in Berlin! Alice Weidel accuses Merz of squandering taxpayer money
▶︎

Scandal in Berlin! Alice Weidel accuses Merz of squandering taxpayer money

Business Logic Vulnerability -  Authentication Bypass via Encryption Oracle
▶︎

Business Logic Vulnerability - Authentication Bypass via Encryption Oracle

الرقية الشرعية للشفاءمن السحروالعين والحسد حصن من الشيطان رقية البيت والاولاد بصوت القارئ سعيد حمدان
▶︎

الرقية الشرعية للشفاءمن السحروالعين والحسد حصن من الشيطان رقية البيت والاولاد بصوت القارئ سعيد حمدان

Billionaire's WARNING: I'm SELLING. The Crash Is Already Here!
▶︎

Billionaire's WARNING: I'm SELLING. The Crash Is Already Here!

CSRF - SameSite Lax Bypass via Method Override
▶︎

CSRF - SameSite Lax Bypass via Method Override

Cross Site Request Forgery - Computerphile
▶︎

Cross Site Request Forgery - Computerphile

CSRF where token is not tied to user session (Video solution, Audio)
▶︎

CSRF where token is not tied to user session (Video solution, Audio)

Lab: CSRF where token is not tied to user session | Burp Suite | Portswigger
▶︎

Lab: CSRF where token is not tied to user session | Burp Suite | Portswigger

CSRF - CSRF Where Referer Validation Depends on Header Being Present
▶︎

CSRF - CSRF Where Referer Validation Depends on Header Being Present