Black Hat Bash: Bash Scripting for Hackers and Pentesters (Bonus: GraphQL and Drone hacking)

Sdílet
Vložit
  • čas přidán 13. 06. 2024
  • Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: Brilliant.org/DavidBombal
    I interview Dolev Farhi and Nick Aleks - the authors of Black Hat Bash and Black Hat GraphQL. Why should you learn either of these? Good reasons including $50K bug bounties :)
    // Books //
    Black Hat Bash:
    USA: amzn.to/3JebZWJ
    UK: amzn.to/3PXnk1i
    Black Hat GraphQL:
    USA: amzn.to/43Y3Ork
    UK: amzn.to/3xtle2J
    Hacking API’s by Corey J Ball: amzn.to/3TQnp89 US and amzn.to/3vXYQxX UK
    // Dolev Farhi’s SOCIAL//
    GitHub: github.com/dolevf
    X: x.com/dolevfarhi
    // Nick Aleks’ SOCIAL //
    X: x.com/nick_aleks
    LinkedIn: / nick-aleks-2b35389
    GitHub: github.com/nicholasaleks
    // Source LINK //
    github.com/nicholasaleks/Damn...
    // CZcams videos REFERENCE //
    Free API Hacking course!: • Free API Hacking course!
    Free Hacking API courses (And how to use AI to help you hack): • Free Hacking API cours...
    // David's SOCIAL //
    Discord: / discord
    X: / davidbombal
    Instagram: / davidbombal
    LinkedIn: / davidbombal
    Facebook: / davidbombal.co
    TikTok: / davidbombal
    CZcams: / @davidbombal
    // MY STUFF //
    www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com
    // MENU //
    00:00 - Coming up
    01:44 - Brilliant Ad
    04:12 - Intro
    04:23 - About Black Hat Bash
    08:13 - How the book came about
    10:40 - Writing the book
    15:19 - Tips for writing a book
    19:10 - No Starch Press
    19:56 - How long have you been hacking?
    20:40 - About GraphQL
    25:32 - How did the book help?
    27:14 - What is GraphQL?
    31:31 - History of GraphQL
    34:07 - How do I get started?
    37:44 - Directive overloading
    40:38 - GraphQL end
    42:06 - Implementing Black Hat Bash
    45:45 - Where do you focus?
    47:30 - Can I make money?
    50:00 - Zero days
    54:41 - Advice for hackers
    55:53 - About the labs
    01:00:42 - Learning the labs
    01:02:08 - Is the book for beginners?
    01:07:23 - Using vs making tools
    01:10:57 - The book is a great tool
    01:14:00 - Writing code raises the ceiling
    01:14:55 - What is your favourite part of the book?
    01:17:48 - Learn the basics
    01:20:56 - Put in the work
    01:25:22 - Fun labs
    01:27:42 - When is the book coming out?
    01:28:30 - Where can we buy it?
    01:29:10 - Talk to us
    01:35:06 - Drone Hacking
    bash
    black hat bash
    graphql
    vim
    api
    hacking api
    api hack
    black hat graphql
    no starch
    no starch press
    osint
    hack
    hacking
    pentesting
    ethical hacking
    penetration testing
    black hat python
    white hat python
    grey hat python
    gray hat python
    cyber security
    kali linux
    ethical hacking
    python programming
    penetration testing
    ethical hacker
    python for hacking
    python full course
    black hat book review
    how to hack
    cyber security course
    hacking books
    computer hacking
    learn black hat python
    python tutorial
    cyber security career
    cyber security analyst
    python hacker
    python hacking course
    python hacking tools
    scapy
    hack python code
    hack python book
    python hack wifi
    Disclaimer: This video is for educational purposes only.
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    #bash #linux #kalilinux
  • Věda a technologie

Komentáře • 101

  • @davidbombal
    @davidbombal  Před 2 měsíci +11

    Big thanks to Brilliant for sponsoring this video! To try everything Brilliant has to offer for free for a full 30 days and 20% discount visit: Brilliant.org/DavidBombal
    I interview Dolev Farhi and Nick Aleks - the authors of Black Hat Bash and Black Hat GraphQL. Why should you learn either of these? Good reasons including $50K bug bounties :)
    // Books //
    Black Hat Bash:
    USA: amzn.to/3JebZWJ
    UK: amzn.to/3PXnk1i
    Black Hat GraphQL:
    USA: amzn.to/43Y3Ork
    UK: amzn.to/3xtle2J
    Hacking API’s by Corey J Ball: amzn.to/3TQnp89 US and amzn.to/3vXYQxX UK
    // Dolev Farhi’s SOCIAL//
    GitHub: github.com/dolevf
    X: x.com/dolevfarhi
    // Nick Aleks’ SOCIAL //
    X: x.com/nick_aleks
    LinkedIn: ca.linkedin.com/in/nick-aleks-2b35389
    GitHub: github.com/nicholasaleks
    // Source LINK //
    github.com/nicholasaleks/Damn-Vulnerable-Drone
    // CZcams videos REFERENCE //
    Free API Hacking course!: czcams.com/video/CkVvB5woQRM/video.html
    Free Hacking API courses (And how to use AI to help you hack): czcams.com/video/TcMP_-clMAo/video.html
    // David's SOCIAL //
    Discord: discord.com/invite/usKSyzb
    X: twitter.com/davidbombal
    Instagram: instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    CZcams: www.youtube.com/@davidbombal
    // MY STUFF //
    www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com
    // MENU //
    00:00 - Coming up
    01:44 - Brilliant Ad
    04:12 - Intro
    04:23 - About Black Hat Bash
    08:13 - How the book came about
    10:40 - Writing the book
    15:19 - Tips for writing a book
    19:10 - No Starch Press
    19:56 - How long have you been hacking?
    20:40 - About GraphQL
    25:32 - How did the book help?
    27:14 - What is GraphQL?
    31:31 - History of GraphQL
    34:07 - How do I get started?
    37:44 - Directive overloading
    40:38 - GraphQL end
    42:06 - Implementing Black Hat Bash
    45:45 - Where do you focus?
    47:30 - Can I make money?
    50:00 - Zero days
    54:41 - Advice for hackers
    55:53 - About the labs
    01:00:42 - Learning the labs
    01:02:08 - Is the book for beginners?
    01:07:23 - Using vs making tools
    01:10:57 - The book is a great tool
    01:14:00 - Writing code raises the ceiling
    01:14:55 - What is your favourite part of the book?
    01:17:48 - Learn the basics
    01:20:56 - Put in the work
    01:25:22 - Fun labs
    01:27:42 - When is the book coming out?
    01:28:30 - Where can we buy it?
    01:29:10 - Talk to us
    01:35:06 - Drone Hacking
    bash
    black hat bash
    graphql
    vim
    api
    hacking api
    api hack
    black hat graphql
    no starch
    no starch press
    osint
    hack
    hacking
    pentesting
    ethical hacking
    penetration testing
    black hat python
    white hat python
    grey hat python
    gray hat python
    cyber security
    kali linux
    ethical hacking
    python programming
    penetration testing
    ethical hacker
    python for hacking
    python full course
    black hat book review
    how to hack
    cyber security course
    hacking books
    computer hacking
    learn black hat python
    python tutorial
    cyber security career
    cyber security analyst
    python hacker
    python hacking course
    python hacking tools
    scapy
    hack python code
    hack python book
    python hack wifi
    Disclaimer: This video is for educational purposes only.
    Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
    #bash #linux #kalilinux

  • @iblackfeathers
    @iblackfeathers Před 2 měsíci +10

    many times i had to live off the land/lan and re-invent the wheel in order to make my own tools due to security policies. bash and python and perl and other stuff already installed or present in the environment have helped a lot in tailoring my workflows. it is awesome someone is covering this specific topic and dedicating an entire book on it. lots of this is cobbled together from various sources since there wasn't a single source for it.

    • @davidbombal
      @davidbombal  Před 2 měsíci +4

      Great comment. Thank you for sharing. I think it's high time that this book was written 😀

  • @austinebangura2249
    @austinebangura2249 Před 2 měsíci +26

    Thanks to David and all co-operative members who share things with him, we really appreciate them.

  • @Alain9-1
    @Alain9-1 Před 2 měsíci +7

    i've been waiting for bash scripting for years, finally uploaded, thanks

    • @davidbombal
      @davidbombal  Před 2 měsíci +4

      The book is out soon. I think it's time that I create videos about this 😀

    • @Alain9-1
      @Alain9-1 Před 2 měsíci +3

      @@davidbombal I can't wait to buy the book, and no one better than you to make videos for us and explain it , thank you again for the efforts

  • @MyDancingirl
    @MyDancingirl Před měsícem

    Excellent interview, loads of insights to hardening graphQL APIs. Thanks for sharing 😊

  • @zayanaamir885
    @zayanaamir885 Před 2 měsíci +6

    You're an ocean of knowledge David

    • @davidbombal
      @davidbombal  Před 2 měsíci +2

      Thank you. But my guests are the ones sharing the knowledge here 😀

  • @Iicence
    @Iicence Před 2 měsíci +6

    thank you for everything david

  • @Casp1anX
    @Casp1anX Před 6 dny

    Bash demos are always high value, but DRONE hacking demos would be amazing! UAVs are growing in popularity at an insane rate, and from what I have been seeing and hearing...not especially secure. Increased visibility may push us in the direction of more security.

  • @Abduselam.m
    @Abduselam.m Před 2 měsíci +4

    Thanks so much David amazing topic

  • @taybtaybe
    @taybtaybe Před 2 měsíci +9

    I am from Afghanistan and David is the best teacher I have seen❤❤❤❤

    • @davidbombal
      @davidbombal  Před 2 měsíci +2

      Thank you! I appreciate that 😀

  • @iMshadab
    @iMshadab Před měsícem

    Thank you sir for these priceless videos, really helps me know what do to what to learn

  • @sassywoocooo
    @sassywoocooo Před 2 měsíci

    hi dad, this came in clutch. i really needed to sharpen my skills with bash. it's about time i stopped using it only for running commands. one could automate many things with bash scripting and it is not even so hard to do that.

  • @georgecostanza7990
    @georgecostanza7990 Před 2 měsíci +1

    Thanks David, youre brilliant man!

  • @DNETREAPER
    @DNETREAPER Před 2 měsíci +2

    Really enjoy your videos thx Rex

  • @bharatiyarailbyaditya3526
    @bharatiyarailbyaditya3526 Před 2 měsíci +2

    Going to learn this right now

  • @Unique_Jasse_user-explore
    @Unique_Jasse_user-explore Před 2 měsíci +2

    David always upload knowledgeable and valuable contant ❤❤

  • @anshulnamdev9363
    @anshulnamdev9363 Před 2 měsíci +2

    Meanwhile me who's waiting for David and these 2 other dudes to teach me black hat bash basics and scripts,and how to make them °_°

  • @antospin4004
    @antospin4004 Před měsícem

    Hi David, thank you very much for always being on the side of who wants to learn. Is there any book you can recommend which covers this same topic but in windows OS prospective? We should not forget that the majority of "common" people's devices are composed of Windows machines and Android phones. Also, I didn't understand if the deone hacking demo will be part of the book and if not where to find it, thank you very much!!

  • @777Nardo
    @777Nardo Před měsícem

    Wowwww and here i wanted to get it, bash sounds exciting. Great video David. Thank you!

  • @khanabdulmuhammad5625
    @khanabdulmuhammad5625 Před 2 měsíci +4

    Black Hat Bash course let's goo

    • @davidbombal
      @davidbombal  Před 2 měsíci +4

      I think I should create some videos about it 😀

  • @gamereditor59ner22
    @gamereditor59ner22 Před 2 měsíci +3

    This is cool!

  • @Betruet
    @Betruet Před měsícem

    great interview thanks

  • @toxyl3915
    @toxyl3915 Před měsícem

    I'd also say there's a lot of room to uncover improperly secured graphql endpoints since its flexibility can make it easy for developers to lose the overview of how all the different parts can and do interact with one another (on the API side as well as on the code side the API interacts with)

  • @tonyb9864
    @tonyb9864 Před měsícem

    Can't wait for the Black Hat Bash book!

  • @luddekn
    @luddekn Před měsícem +1

    I'v been wanting to learn proper bash scripting for ethical hacking for a while now but have not since other studies etc, but a book is just perfect!! Was so bumbed to go to Amazon and seeing it being released October 1 (need it now!!!)😅But it takes time to make a great book, can't wait, going to be great.

  • @SnowTheParrot
    @SnowTheParrot Před 2 měsíci +2

    @NickAleks owes me a signed copy for this video !
    So glad this happened.
    Great video David and cant wait to read the book! Thanks Nick and Dolev!

  • @duncanochieng2462
    @duncanochieng2462 Před měsícem

    "I wanna start learning the technology,,, not troubleshooting the labs"🤣How many times have I done that?... timeless😂

  • @Om-vh3zc
    @Om-vh3zc Před měsícem +1

    Thank You Sir Great knowledge....🙏

  • @Samirfromthefuture
    @Samirfromthefuture Před 2 měsíci +2

    GOOD TIMING

  • @GiC7
    @GiC7 Před 2 měsíci +1

    Thanks

  • @Abc-sl1nf
    @Abc-sl1nf Před 2 měsíci

    Thx, giving it a try.

  • @Roberrrrtttt17
    @Roberrrrtttt17 Před 2 měsíci +4

    Thank you for all the content you put here, David! Because of you and your clips i've got my first job in cybersecurity, learning more from you than i did in 3 yrs of college.
    Greetings from Eastern Europe! 🫡

    • @davidbombal
      @davidbombal  Před 2 měsíci +1

      Fantastic! Well done! Very happy to hear that I've helped you in your journey! 😀

  • @ProfessorLinux
    @ProfessorLinux Před 26 dny

    Love this content. 🔥🔥

  • @steve0ro
    @steve0ro Před měsícem

    Great video! But the real question is, when will you have ippsec on here?!

  • @yurilsaps
    @yurilsaps Před měsícem

    Bash demos please!

  • @deanhaycox
    @deanhaycox Před 2 měsíci

    Enjoyed the vidoe as always :) the book is pretty hefty though at nearly £50

  • @savagepro9060
    @savagepro9060 Před 2 měsíci +6

    This is NOT the time to be . . . BASHFUL!

  • @carsonjamesiv2512
    @carsonjamesiv2512 Před 2 měsíci +1

    COOL VIDEO🎉

  • @Talking-nn8sq
    @Talking-nn8sq Před měsícem

    Hello, dear Mr. Bumble. ❤ Can you please post a picture of your bookshelf? I want to see the books you are reading.

  • @Mudaseer44
    @Mudaseer44 Před měsícem

    Hey david....
    I've recently downloaded an app that is not available on play store, after that something is running background and downloading , many advertisements are coming on the screen , for every 10 to 15 mins i am finding an app is running background .After noticing this i've deleted the downloaded application , but it is still the same what do i need to do ?
    Mobile name: samsung galaxy m12

  • @lptechCT
    @lptechCT Před měsícem

    I am looking forward for the book, the bash courses all there just show what the command does but do not apply to a real world examples. ✌️

  • @Shooter_Mcgavin69
    @Shooter_Mcgavin69 Před měsícem

    Someone was trying to log into my Amazon account. I phoned amazon. And was told to reset my password and that was all. . . What would u guys do?

  • @JamesJohnAgar
    @JamesJohnAgar Před 2 měsíci

    You will have to get that guy back for the Drone hacking simulator for more information. Haven't heard much about this recently.

  • @NatteeSetobol
    @NatteeSetobol Před 2 měsíci

    If you can't write a book like me or teach it to someone, write a blog! It really helps in the learning process even if you are a bad writer like myself.

  • @QuantumKurator
    @QuantumKurator Před měsícem

    US based Amazon links would be nice

  • @dreamybull1509
    @dreamybull1509 Před měsícem

    whats the difference between the early access edition & the regular edition?

    • @srijands123
      @srijands123 Před měsícem

      Early access edition has only few chapters. Think 4? Have to check again. Regular edition will have a lot more. Like all of it.
      Edit: 5/13.

  • @cyberdevil657
    @cyberdevil657 Před 2 měsíci +1

    Hi David

  • @mrcvry
    @mrcvry Před měsícem

    They are so busy writing the book that they are not on Mastodon yet. 😂

  • @gorge5412
    @gorge5412 Před měsícem

    Plz edit out the soaring egoistical flights, e.g , ~05:10.

  • @sargismartirosyan9946
    @sargismartirosyan9946 Před 2 měsíci +1

    Finelly bash scripting BRO DUCKING FINALLY YESSSSS

  • @user-jo4ko7si6s
    @user-jo4ko7si6s Před 2 měsíci +1

    thanks david
    you saved me 1 week of searching for bash scripting

  • @slick95112
    @slick95112 Před 2 měsíci

    David secretly works for No Starch Press.

    • @davidbombal
      @davidbombal  Před 2 měsíci +1

      😂 If only they actually paid me .... I like their books and their focus on cybersecurity. Any other authors you want to see on the channel (from other publishers)?

  • @faizankhd
    @faizankhd Před měsícem

    how to create vulnerable labs to improve our skills

  • @Talking-nn8sq
    @Talking-nn8sq Před měsícem

    I am one of your invisible fans 👋.

  • @yassersaied7279
    @yassersaied7279 Před 2 měsíci

    Thanks David for the amazing efforts … just hoping that the videos not to exceed the 60 min long…

  • @AbdirahmanEssa
    @AbdirahmanEssa Před 2 měsíci +2

    Absolutely best video conversation with tech experts and I love it
    Thank you @davidbombal

    • @davidbombal
      @davidbombal  Před 2 měsíci

      Thank you! Very happy to hear that!

  • @Talking-nn8sq
    @Talking-nn8sq Před měsícem

    Please , you answer me.

  • @TexasBig
    @TexasBig Před 2 měsíci

    ****I need a Neurologist to install a micro c input in my skull.

  • @felistarwairimu
    @felistarwairimu Před měsícem

    Someone help me i have been scam

  • @interferonrecon8162
    @interferonrecon8162 Před 2 měsíci

    David, are you a Knight?

  • @savagepro9060
    @savagepro9060 Před 2 měsíci

    Bash Scripting vs Shell Scripting? 🤔🤨

    • @WhiteDeVil3
      @WhiteDeVil3 Před 2 měsíci

      Are you referring to the fact that you can use a different language than Bash for shell scripting?

    • @savagepro9060
      @savagepro9060 Před 2 měsíci

      @@WhiteDeVil3 uh, actually I was just curious if they ARE different, NEWBIE here

    • @WhiteDeVil3
      @WhiteDeVil3 Před 2 měsíci

      @@savagepro9060 well then there's your answer mate, "bash scripting" implies usage of specifically Bash to have the shell do something, shell scripting - you get the point, you can use Python for shell scripting.
      Hope that cleared things up a bit.

    • @savagepro9060
      @savagepro9060 Před 2 měsíci

      @@WhiteDeVil3 Yep! Thanks

    • @iblackfeathers
      @iblackfeathers Před 2 měsíci

      bash makes it clear on syntax because it vouches for what the authors are using. at times you may run into issues if you use a different shell. bash is popular enough to work in various environments and situations.

  • @ComicusFreemanius
    @ComicusFreemanius Před 2 měsíci +1

    I'm four years into C#, please don't make me learn python.

    • @hetmanfoko
      @hetmanfoko Před měsícem +1

      Sincerely, learn haskell /j
      but seriously, python is really useful (and pretty easy in syntax), while having LOTS of additional packages, it's definitely worth learning alongside c#.

    • @ComicusFreemanius
      @ComicusFreemanius Před měsícem

      @@hetmanfoko I know you're right, I'm just so burnt out. Things that should only take me a day end up taking me a week or longer and I really have to do something about it.

  • @deepanshuvashisht3165
    @deepanshuvashisht3165 Před 2 měsíci +3

    1st

    • @davidbombal
      @davidbombal  Před 2 měsíci +1

      Thank you for your support!

    • @deepanshuvashisht3165
      @deepanshuvashisht3165 Před 2 měsíci +1

      Welcome sir 😊 actually i have to say thank you sir for providing quality content for free 😊

  • @Talking-nn8sq
    @Talking-nn8sq Před měsícem

    I wrote a comment to you on Twitter, but you didn't reply.

  • @Swiftgriffy
    @Swiftgriffy Před 2 měsíci +1

    First🙂

    • @davidbombal
      @davidbombal  Před 2 měsíci

      Very close!

    • @Swiftgriffy
      @Swiftgriffy Před 2 měsíci

      @@davidbombal so disappointed, but I really appreciate your content and thank you.

  • @MrGFYne1337357
    @MrGFYne1337357 Před měsícem

    Is it just me, or does David seem like an CIA asset or Agent?, I wonder how many youtubers ARE agents? Anyways David, you give me Stan vibes (from American Dad cartoon). I like your courses and videos. I just think your an agent... for something...

  • @MichaelDomer
    @MichaelDomer Před měsícem

    Change your setup, the person you're looking at needs to be where your camera is. Now it looks as if you're doing something else at the same time while doing the interview, it comes across as disrespectful, as if you're watching the internet while the other guy is talking. It's stupid the way you look down the whole time, you don't see any major news station doing this, both interviewer and guest always look at the camera.

    • @spectralknights2
      @spectralknights2 Před měsícem

      Nobody cares, only you. And this is not a major news station.

  • @ageresequituresse
    @ageresequituresse Před měsícem

    Takes way too long to get to the point in this talk.

  • @Talking-nn8sq
    @Talking-nn8sq Před měsícem

    Hello, dear Mr. Bumble. ❤ Can you please post a picture of your bookshelf? I want to see the books you are reading.

  • @ageresequituresse
    @ageresequituresse Před měsícem

    Takes way too long to get to the point in this talk.