• XSS.stack #1 – первый литературный журнал от юзеров форума

inspect element

it cannot possible to bypass otp through inspect element

Some developers are dumb and code it in this way. I have seen a similar scenario where you can bypass the premium upgrade requirement by modifying the code on inspect element.
Was very easy and unusual way to code it this way.
 
Пожалуйста, обратите внимание, что пользователь заблокирован
I need to speak to someone who using inspect element to bypass otp
telegram @peter_piper1
Bro, are you talking about deleting a backend fragment through the element code right now?
 
Пожалуйста, обратите внимание, что пользователь заблокирован
Bro, are you talking about deleting a backend fragment through the element code right now?
some sites ( low quality ) show the sent otp in the POST request i have tested it before so sometimes it deserve to check
 
Some developers are dumb and code it in this way. I have seen a similar scenario where you can bypass the premium upgrade requirement by modifying the code on inspect element.
Was very easy and unusual way to code it this way.
We use inspect element to edit website,we can save it ofline,i means if you wanna hack something it wont do anything

After edit the website if you reload it,it will show original page, so you cant do anything... Bypass is not easy,even only a few hackers can bypass...For example there is many way to hack facebook,most of the hackers use spam message/file to hack facebook,its password is safe on its server...so if you hack facebokk you will get its Access then you can get all users password,but its nearly impossible,thats why hacker just bypass otp to hack fb
 
We use inspect element to edit website,we can save it ofline,i means if you wanna hack something it wont do anything

After edit the website if you reload it,it will show original page, so you cant do anything... Bypass is not easy,even only a few hackers can bypass...For example there is many way to hack facebook,most of the hackers use spam message/file to hack facebook,its password is safe on its server...so if you hack facebokk you will get its Access then you can get all users password,but its nearly impossible,thats why hacker just bypass otp to hack fb
Yes but I was just referring to one experience or scenario. Its not the main way to bypass OTP. That would be impossible or hilarious.

There's this website with CSS design with the value " disabled " it was the upgrade feature. All I need to do is edit via inspect element and change to enabled and I view resources only upgraded members can see.

I guess is a client-side issue or validation probably by bad coding practice. OTP can be the same too on shitty websites.
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх