How Google Analytics was used to Breach Virtually any Website
Daniel Boctor
@danielboctorAbout
I tell computers what to do I'm just here to share my experiences throughout my ongoing journey of computer science and software engineering studies. I have a passion for learning, and I hope you do too. I'm going into my 4th year of University, and am currently interning as a software engineer at Cisco Meraki.
Latest Posts
Video Description
In this video, we take a deep dive into the inner mechanics of Cross Site Request Forgery (CSRF), CSRF Tokens, and how Surgey Bobrov was able to bypass them with a joint Google Analytics & Django web framework exploit / vulnerability. CSRF is the lesser known of the big three web attacks, consisting of SQL injection, and cross site scripting (XSS). 0:00 - Overview 0:48 - Cookies 3:17- Cross Site Request Forgery (CSRF) 4:29- CSRF Tokens 6:42- Exploit / Vulnerability WE HAVE A DISCORD NOW! https://discord.gg/WYqqp7DXbm Django patch - https://www.djangoproject.com/weblog/2016/sep/26/security-releases/ Original report - https://hackerone.com/reports/26647 Surgey Bobrov - https://hackerone.com/bobrov?type=user Double Submit Cookie - https://cheatsheetseries.owasp.org/cheatsheets/Cross-Site_Request_Forgery_Prevention_Cheat_Sheet.html#double-submit-cookie MUSIC CREDITS: LEMMiNO - Cipher https://youtu.be/b0q5PR1xpA0?si=pUNJUB-ra1ulTJtI CC BY-SA 4.0 LEMMiNO - Nocturnal https://youtu.be/epmoV2HRs9U?si=Rljr2wC0SKYFEruJ CC BY-SA 4.0 #Python #Coding #Programming #Software #SoftwareEngineering #ComputerScience #Code #ProgrammingLanguage #SoftwareDevelopment #Development #Developers #Hacking #Hack #CyberSecurity #Exploit #Tracking #Web #WebDev #SoftwareEngineer #Django #WebFramework #Vulnerability #PenTesting #Privacy #Spyware #Malware #CSRF #CrossSiteRequestForgery #SQLInjection #CrossSiteScripting #XSS #WebVulnerabilities #Cyber #CyberAttack #BugBounties #GoogleExploit #GoogleAnalytics #EthicalHacking
Craft Essentials on Hand
AI-recommended products based on this video

Charmin Ultra Soft Toilet Paper, 6 Mega Rolls = 24 Regular Rolls

Charmin Ultra Strong Toilet Paper, 6 Mega Rolls = 24 Regular Rolls

Charmin Ultra Soft Cushiony Touch Toilet Paper, 24 Family Mega Rolls = 123 Regular Rolls

Hydrocolloid Bandages for Wound Care, Extra Large Medical-Grade Hydrocolloid Roll with Self-Adhesive, Ultra Absorbent, Flexible & Waterproof, DIY Size & Shape First Aid Kit Essential (2in*4.8ft)

DLseego Pink and Purple Switch Case Set Gradient Carrying Case with 10 Slots Cute Protective Dockable Hard Shell with 4PCS Glitter Cat Paw Thumb Grips Caps and 1PC Flower Blossom Chain For Switch 2017

Hydrocolloid Bandages for Wound Care, Extra Large Medical-Grade Hydrocolloid Roll with Self-Adhesive, Ultra Absorbent, Flexible & Waterproof, DIY Size & Shape First Aid Kit Essential (2in*4.8ft)

Charmin Ultra Soft Toilet Paper, 6 Mega Rolls = 24 Regular Rolls

Charmin Ultra Strong Toilet Paper, 6 Mega Rolls = 24 Regular Rolls

