In this video, we walk through the Basic Password Reset Poisoning lab from PortSwigger's Web Security Academy. In this lab I demonstrated how attackers can exploit insecure handling of the Host header during the password reset process to hijack user accounts.
📌 Lab Goal: Exploit the vulnerability to reset Carlos’s password and log in as him.
🧠 Skill Level: Beginner
🔔 Don’t forget to like, subscribe, and turn on notifications for more web security walkthroughs!
#WebSecurity #BugBounty #EthicalHacking #PortSwigger #XSS #SSRF #CSRF #BurpSuite #WebSecurityAcademy #PasswordReset #Poisoning #OWASP #CTF #CyberSecurity #infosec