Day 1/100 of #100DaysOfCyberSecurity
Today i was able to learn about Username enumeration via response timing. It took me some time to tackle this lab even with walkthroughs but i learnt on the way and gained added knowledge.
#AppSec@ireteeh@jay_hunts@cyberjeremiah
My goal this month is to complete the CSRF and clickjacking topics on PortSwigger Web Academy, as these are the next topics on my learning list.
Right now, I am focused on learning about XSS and working on the related labs, and I will be finished with them soon.
@gabbytech01 Hey Gabriel,
I am trying to build projects that can demonstrate my skills as a web application pentester. Pls can u share some project you've worked on or documented?
@kyr19n Hey,
I am currently learning web application penetration testing, and the plan is to eventually go into bounty. So, it will be really nice to connect with you
โWe have diverse needs and desires and sometimes the same person may not fulfill all the desiresโ.
Itโs all fun and games until you are the one being cheated on. Thatโs when you will realize how painful it is. Until then, keep looking for different people to fulfill your diverse needs.
OWASP juice shop has been my padi throughout this week and I just love the thrill of finding vulnerabilities on it.
Yesterday, I exploited an SQL Injection vulnerability and got hold of all user credentials. Firsthand, I understood why it is one of the most dangerous vulnerabili-
I just completed the Access Control Path on PortSwigger Web Academy.
Things really started to click when I began asking AI questions about how the code was probably written to allow these vulnerabilities. This gave a deeper understanding of why certain bypass techniques worked.
I just completed the Access Control Path on PortSwigger Web Academy.
Things really started to click when I began asking AI questions about how the code was probably written to allow these vulnerabilities. This gave a deeper understanding of why certain bypass techniques worked.
Last year a guy contacted my friend for a job on twitter here
Pay was $2500/month
They paid him $1000 upfront the next day, added him to their discord and TG group
After a week he had issues with their app and contacted them
They sent him a file unknowingly to him it was a
Access indeed changes everything. ๐
In Q1, we awarded 15 laptops to women across Nigeria through the She Code Africa Laptop Scholarship.
With support from @HP, weโre expanding access to digital tools for women and girls across Nigeria. ๐๐
Catch the full highlight from the handover ceremony https://t.co/Ehi4MrMQmc
Did another TryHackMe room yesterday
Of all the challenges I did last week, this is probably my favorite.
I'm writing a blog on how I tackled it. Although the room wasnโt focused on what I learned last week (file upload vulnerability), it was still insightful