TRYHACKME | ADVENT OF CYBER DAY 1 | IDOR VULNERABILITY

The-Digital-Empress

TRYHACKME | ADVENT OF CYBER DAY 1 | IDOR VULNERABILITY by The-Digital-Empress

In the YouTube video "TRYHACKME | ADVENT OF CYBER DAY 1 | IDOR VULNERABILITY", the speaker introduces a 25-day cybersecurity challenge called "Advent of Cyber." The challenge provides daily tasks, and users earn a custom certificate of completion if they finish 25 tasks. The video provides step-by-step instructions for installing OpenVPN and connecting to the network for the challenge. The challenge involves investigating a tampered inventory management system that produces faulty gifts, using input with IDOR vulnerability to alter the query component to view other users' information, and using the reverb button to revert changes made on a website to fix the toy-making machine. The video creator answers questions related to the advent room and encourages viewers to join their study group Discord.

00:00:00

In this section of the video, the YouTuber introduces a 25-day challenge she plans to undertake with TryHackMe called "Advent of Cyber" where users can get started with cybersecurity for free and have the chance to win over $19,000 worth of prizes. The challenge offers daily tasks to be completed, and the user earns a custom certificate of completion if they finish all 25 daily security tasks. TryHackMe is completely free, but users can get a TryHackMe VIP subscription to get 20% off an annual subscription using the discount code a0c2021 at checkout, which is valid for five days, 15 hours, and 13 minutes.

00:05:00

In this section, the speaker discusses the installation of OpenVPN for the Advent of Cyber challenge. They explain that OpenVPN needs to be installed on the same virtual machine you are using for the challenge and that you should be careful to install OpenVPN and not another similar agent. The speaker then walks through the steps of using OpenVPN to connect to the network for the challenge and demonstrates how to use the OpenVPN file to establish a connection.

00:10:00

In this section, we see the main character investigating a tampered inventory management system that is producing faulty gifts, with Christmas fast approaching. The user must access and fix the system to prepare for Christmas. The video explains the various pages of the system, including an activity page that shows user actions. Through the input with IDOR vulnerability, the user can alter the query component to view other users' information. The video then goes on to suggest trying the different values from one to twenty to identify the user responsible for tampering with the system.

00:15:00

In this section, the video creator explains how to revert changes made on a website that allows users to create toys. By clicking on the user's actions and using the reverb button, the changes can be rolled back, fixing the toy-making machine. Completing this task earns the user a flag. The video creator also answers questions related to the advent room, including the position of various company employees and provides resources for users interested in learning about IDOR vulnerabilities. The video creator encourages viewers to join their study group Discord to discuss the certification and share updates on the field.

More from
The-Digital-Empress

No videos found.

Related Videos

No related videos found.

Trending
AI Music

No music found.