00:00/00:00

Learn how attackers use Open Source Intelligence (OSINT) tools and HTTP proxies to find leaked credentials and perform brute force attacks on web environments.

Introduction to OSINT and Web Brute-Force Tactics

17:37Study Material
This lesson explores the differences between technical and human cyber attack chains. It dives into Open Source Intelligence (OSINT) gathering, using third-party tools like the Wayback Machine to unearth historical data and platforms like GitHub to search for accidentally posted developer secrets (like AWS keys). Furthermore, the lesson shifts into a practical demonstration of intercepting HTTP traffic using a proxy, showing how attackers capture login requests and utilize top password lists to automate rapid brute-force attacks against insufficiently protected web applications.
Watch until the end to complete this lesson
0% watched
Back to Course

Tags

OSINTWayback MachineGitHubAWS Secret keyHTTP proxyBrute forceCSRFAttack chains