BINNING COURSE By Black Hat Pakistan | part 2

  • 4 months ago
BINNING COURSE By Black Hat Pakistan
Transcript
00:00sorry for it guys, my pc will restarted it so we should take a time okay let's go
00:06to my zen map is successfully installed right now so let's start our Zen map
00:14it is Zen map X okay let's search here let's see
00:24where is my Zen map? okay wait
00:30okay let's go to my Zen map
00:48okay I think it's not installed what the
00:53hell I don't know why my pc got it restarted and the recording is
01:01stopped and I am recording a new video right now so guys it's taking a
01:06lot of time so wait for it okay I'm pausing the video right okay guys I just
01:16leaved it it will installing okay it's take a time okay until we code
01:23let's code our checker right yeah Binskey checker okay let's close it see
01:30I already downloaded this I showed you in okay I showed you this in
01:38where wait a minute I showed you I showed this link okay already in last
01:47video this is a bin checker okay go here then you need to see there is a API
01:57right just edit with notepad++ okay after editing you will see this
02:07types of code okay let's see there is a see from here we are coding our
02:21coding our checker right okay
02:29wait a minute
02:38see it's very easy guys okay it is very easy right okay how I will show you see
02:49this is a whole code right
02:59see I already coded for you right just see I already coded for you you no need
03:06to worry about this but but whenever whenever sorry but whenever this website
03:16may die because of not showing you the real checker so you need to do what see
03:25just go to see here is payment brain tree right here is a payment by tree
03:31dot API dot graph SQL showed you before if you notice me I already show you
03:39where the okay welcome to I think this one no it is my last previous okay this
03:48one okay see okay wait wait guys
03:56see in previous video I will talk about how to see right how to see you are
04:05working or not right go to here just I click on credit card right just go to
04:16checkout
04:20taking a lot of time due to this Zen map due to this Zen map it's taking a lot of
04:28time so wait until it shows see how it is okay let's leave it okay okay okay
04:41then okay this is right the okay see if I type this one see this if I type this
04:51what will it show let's copy this one and and let's paste it here in credit
04:59card section okay what man this credit card processing okay this see this is a
05:06brain tree right but okay wait not showing me cannot fill so wait let's
05:17refresh it again
05:37wait guys
05:45my computer has been restarted and it's showing a lot of problems due to this
05:51Zen map Zen map after installing Zen map it's rebooted my device and then Zen map
05:58also not installed I don't know why it's not showing me the Zen map okay so
06:03okay check out okay after check waiting just paste okay where is this okay just
06:13paste it here which you have copied from here and then paste it here in the
06:20after check waiting just paste okay where is this okay just paste it here
06:29which you have copied from here okay let's 322 122 okay 132 322 132 right
06:41132 okay 0 3 wait here 0 3 22 right okay let's inspect this okay type on
06:56inspect elements okay
07:03in go to networks network okay
07:12okay wait guys
07:18go to networks and type already shown before okay just pay click on pay 10
07:26euros then see what it will show okay it's showing me graph QL right see in
07:33our code we need to paste here where is our code see in our code you need to
07:44paste here graph QL site which is present wait it which is present in
07:54headers right this is a graph QL link you need to just copy the URL and you
08:01need to paste it here if you find another another brain tree site you need
08:06to do this types of works okay after pasting the URL you need to you need to
08:14copy this all okay you need to copy this all wait how will you find this okay
08:20let's go to inspect elements where is this go to inspect elements this is a
08:27response headers okay so wait just read the code again okay let's read the code
08:33again it's showing authority payment brain tree dot dot com right adcept
08:39language is showing me language okay brain tree versions okay let's find this
08:44code okay let's find this code right let's see let's see how to find this
08:50code okay where where is my inspect elements let's find this code where it
08:58is response code okay okay right see I find it this code in request header
09:10right in here right in here I find it the code but see we need to remove some
09:19of them okay here here see what you you need means authority accept accept
09:25languages okay authorization content type origin refer sec feed okay this you
09:33know you need okay you need this only this type of variables okay let's check
09:40it we will find or not after if the site is patched then you need to do this on
09:46other sites okay it's depend upon you and your hard work right let's go here
09:52let's minimize this let's check it out here I find this authority yes I find it
10:01authority okay accept I find it here okay you need to remove see you need to
10:08remove this method and push right after removing this accept here is accept
10:13here is accept encoding you need to remove encoding right if you type
10:19encoding there your checker will not work right see accept encoding accept
10:27language after you need to accept you need to remove you don't need to add
10:32this encoding right see here also not there encoding right you need to accept
10:38language is there okay after authorization see okay see this are same
10:44I just copy and pasted it okay because it take a lot of time because okay see
10:51accept language okay there is not accept language wait wait wait wait there is
10:57accept language okay okay wait wait guys is there is accept language and content
11:06length is there brain tree is there origin origin is there refer is there
11:10okay sex feast only okay you need to paste okay you need to remove accept
11:16encoding accept encoding and schema and path okay right just call see and paste
11:25it here okay you need to see this okay you need to see and paste it right okay
11:31let's see the another code right see okay this is a okay I will I will teach
11:38you okay see here is a main thing you need to cover right here is a this is a
11:45main thing okay see I already fixed it but but but but in your time if you if
11:52this site patch to give you a to show you VBV and non VBV you need to do
12:00means go inspect elements and find where the variable is okay see this is a
12:09same guys the this is a same see but but but but but see there is a there is a
12:17brain tree but here is a either mailer so what will I do you need to check in
12:23lookup okay this this format is including lookup okay let's go to let's
12:30go to request header see see we find it here okay see we find it here keep alive
12:42okay see accept is there accept language is there you I already tell you that you
12:49need to remove accept encoding and assets control see okay wait wait wait
12:55you need to remove this also accept request encoding accept access control
13:01request header you need to remove this and and post okay you need to remove
13:08this all but but you need to see you need to you need to check as it is see
13:15it's it's getting accept accept language connection content type host origin
13:20refers sex sex sex mode sex page site user agent right you need to only copy
13:27this only if there is a host here this is a variable but you need to search
13:33this variable and copy and paste it there if your this website is there dead
13:38you need to do that types of okay right see see there are same empty is here
13:47here is empty and check here we will get empty here also right this is a empty
13:54right you need to find I it's in script it's already give a variables but you
14:00need to put the strings okay just copy it from here and paste it here this is
14:04so easy guys okay just copy and paste for but but let's go on this okay HTTP
14:11brain tree let's go on inspect elements if you see you see here see here just do
14:21what I say okay just do what I say right just see I used the variable of token
14:28right token see here is a token right I use a token here also because see I in
14:37previous video I just talked about token right okay where I see where I
14:44will find that token see in lookup right in lookup
14:51in lookup there is a token right see there is a token here this is a token
15:06right this is from these to this wait I will copy this right I will copy this
15:17and just new and paste it here see this is a token right what you need to do
15:29this is a token it's showing you token CC BJ something like you need to select
15:35from this forward slash to this back this backslash just remove that token
15:43right you need to remove the token and add the right you need to add the this
15:50this variable which I already added here okay that's it guys you need to just add
15:55here with with this commas right is this commas you need to copy this and you
16:03need to add here right here just paste it here it's the same link right it's the
16:10same what you need to do next means see wait wait that's it guys see that's it
16:16okay but but see I got it here the amount the what is a post field here
16:26what is this amount 10 brine tree you need to paste it here when when this
16:31website is getting patched you need to find this request also in request field
16:37this post field how to find this request amount let's go to inspect elements okay
16:45just go to view source wait okay I am NOT finding it look up right let's go to
16:54graph graph QL okay let's go to graph QL let's see here let's see view source I
17:04am getting this okay I am getting this prepaid held debit okay let's see what I
17:10am getting here let's see it's selling me amount 10 right amount I need to find
17:16this amount 10 brine tree okay let's find it how to find that let's find it
17:23out okay this is a view parse let's go to variables okay I just go to brine tree
17:36right it's having a brine tree okay sorry
17:43wait I got it yes I I got it brine tree right in brine tree I need the request
17:50right okay I didn't get here in brine tree is there is a second request right
17:54second request of brine tree let's check it out
18:01you paste source see I did it I am NOT getting let's go to graph QL
18:09right guys okay I am NOT getting this go to graph QL request to right see
18:30I am getting this again but see client SDK data source client integers costume
18:36what where where I can find this okay let's see brine tree let's study this
18:45data right showing me meta app merchandise SDK version costume
18:51integrant custom session ID see here it's showing session ID and many things
18:59right see it's a be be say some values right how can I find this let's find
19:07this value okay let's find how we can find this okay amount 10 brine tree we
19:14need a what version is
19:18okay it's installing again where is my inspect elements go sorry guys
19:32okay but see here I am getting something right showing me prepared but let's see
19:43in viewpars
19:48let's go to variables wait a minute guys wait a minute my battery my laptop
19:53batteries

Recommended