2 Videos for OAuth2: Predictable State

PRO
Tier
Hard
Hard
300 completed
Return to Exercise
image of exercise OAuth2 predictable state: Introduction

This video requires PentesterLab PRO

GO PRO
OAuth2 predictable state: Introduction

This video covers the OAuth2 Predictable State exercise, part of the Authorization and Authentication Badge. It demonstrates how OAuth2 can be exploited if the state parameter is predictable, allowing attackers to link their account with a victim's account.

video duration icon07:21 number of views icon689

 

image of exercise OAuth2 Predictable State: Exploitation

This video requires PentesterLab PRO

GO PRO
Spoiler
OAuth2 Predictable State: Exploitation

In this video, we explore the OAuth2 Predictable State exercise from the Authentication and Authorization badge. We demonstrate how to exploit predictable states in OAuth2 by brute-forcing the state parameter.

video duration icon12:48 number of views icon858