mirror of
https://github.com/HackTricks-wiki/hacktricks.git
synced 2025-10-10 18:36:50 +00:00
20 lines
930 B
Markdown
20 lines
930 B
Markdown
# Umetanje brojeva telefona
|
|
|
|
{{#include ../banners/hacktricks-training.md}}
|
|
|
|
Moguće je **dodati stringove na kraj broja telefona** koji se mogu koristiti za iskorišćavanje uobičajenih injekcija (XSS, SQLi, SSRF...) ili čak za zaobilaženje zaštita:
|
|
|
|
<figure><img src="../images/image (461).png" alt="https://www.youtube.com/watch?app=desktop\&v=4ZsTKvfP1g0"><figcaption></figcaption></figure>
|
|
|
|
<figure><img src="../images/image (941).png" alt="https://www.youtube.com/watch?app=desktop\&v=4ZsTKvfP1g0"><figcaption></figcaption></figure>
|
|
|
|
**Zaobilaženje OTP-a / Bruteforce** bi funkcionisalo ovako:
|
|
|
|
<figure><img src="../images/image (116).png" alt="https://www.youtube.com/watch?app=desktop\&v=4ZsTKvfP1g0"><figcaption></figcaption></figure>
|
|
|
|
## Reference
|
|
|
|
- [https://www.youtube.com/watch?app=desktop\&v=4ZsTKvfP1g0](https://www.youtube.com/watch?app=desktop&v=4ZsTKvfP1g0)
|
|
|
|
{{#include ../banners/hacktricks-training.md}}
|