Cyber Security | CTF | Vulnhub | Y0usef | Directory Enumeration, X-Forwarded-For, File Upload Filter

Cyber Security | CTF | Vulnhub | Y0usef | Directory Enumeration, X-Forwarded-For, File Upload Filter

226 Lượt nghe
Cyber Security | CTF | Vulnhub | Y0usef | Directory Enumeration, X-Forwarded-For, File Upload Filter
Welcome to this complete beginner-friendly walkthrough of the y0usef machine from VulnHub! 🚀 In this video, we go through step-by-step techniques to enumerate directories and gain access to the system: 🔹 Use Gobuster, dirb, and dirsearch for powerful directory enumeration. 🔹 Discover a hidden directory where direct access is forbidden. 🔹 Bypass access restrictions using the X-Forwarded-For header with browser extensions or Burp Suite. 🔹 Upload a PHP reverse shell after bypassing the file upload filter. 🔹 Gain an initial foothold and capture the user flag. 🔹 Perform lateral movement to another user with ease. 🔹 Achieve root privilege escalation and complete the machine! 🎯 🛠️ Tools Used: Gobuster, dirb, dirsearch, Burp Suite, PHP reverse shell. 🔒 Techniques Covered: Directory Enumeration, Header Manipulation, File Upload Bypass, Lateral Movement, Privilege Escalation. 📌 Perfect for beginners looking to improve their penetration testing and CTF skills! 👉 Don't forget to like, subscribe, and turn on notifications for more CTF and ethical hacking walkthroughs! #VulnHub #y0usef #CTF #EthicalHacking #Pentesting #BugBounty #PrivilegeEscalation #DirectoryEnumeration #pentesting #kali #kalilinux #hacker #oscp #linuxcommandlinetutorial #linuxcommandline #linuxadministration