video thumbnail 12:28
Design Flaw in Security Product - ALLES! CTF 2021

2021-10-26

[public] 6.42K views, 1.30K likes, 8.00 dislikes audio only

channel thumbLiveOverflow

In this video we are exploring a theoretical security product that automagically encrypts user data securely. But it has a fundamental design flaw which can be exploited.

Challenge Files: https://github.com/LiveOverflow/ctf-cryptowaf

Walkthrough: https://www.youtube.com/watch?v=ZKrABs-N9wA

BugBountyReportsExplained: https://www.youtube.com/c/BugBountyReportsExplained

00:00 - Intro

01:33 - Background Story

02:55 - What is CryptoWAF?

04:16 - Implementing Encryption

05:06 - Encryption Challenges

06:59 - Implementing Decryption

07:02 - Design Flaw

08:26 - Exploiting the Design Flaw

09:06 - Leaking Database

10:04 - WAF Bypass

11:04 - Conclusion

12:07 - Outro

-=[ ā¤ļø Support ]=-

→ per Video: https://www.patreon.com/join/liveoverflow

→ per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join

-=[ šŸ• Social ]=-

→ Twitter: https://twitter.com/LiveOverflow/

→ Instagram: https://instagram.com/LiveOverflow/

→ Blog: https://liveoverflow.com/

→ Subreddit: https://www.reddit.com/r/LiveOverflow/

→ Facebook: https://www.facebook.com/LiveOverflow/


can you hack this screenshot service?? - CSCG 2021 by LiveOverflow
/youtube/video/FCjMoPpOPYI
Intro
/youtube/video/v784VBx9w8g?t=0
Background Story
/youtube/video/v784VBx9w8g?t=93
What is CryptoWAF?
/youtube/video/v784VBx9w8g?t=175
Implementing Encryption
/youtube/video/v784VBx9w8g?t=256
Encryption Challenges
/youtube/video/v784VBx9w8g?t=306
Implementing Decryption
/youtube/video/v784VBx9w8g?t=419
Design Flaw
/youtube/video/v784VBx9w8g?t=422
Exploiting the Design Flaw
/youtube/video/v784VBx9w8g?t=506
Leaking Database
/youtube/video/v784VBx9w8g?t=546
WAF Bypass
/youtube/video/v784VBx9w8g?t=604
Conclusion
/youtube/video/v784VBx9w8g?t=664
Outro
/youtube/video/v784VBx9w8g?t=727
I’m moving, no videos sorry 17,544 views
/youtube/video/9CS3q0uG1LI
Support liveoverflow.com
https://liveoverflow.com/support
CTFs are AWESOME! 78,356 views
/youtube/video/L2C8rVO2lAg