Back to Browse

Using joern to Find GraphQL Authorization Issue

8.5K views
Dec 30, 2022
37:47

My Shop (advertisement): https://shop.liveoverflow.com/ We explore joern for the first time to write a query that can help us find a GraphQL authorization issue. Using CodeQL to find the same issue: https://www.youtube.com/watch?v=VrF1RwnJzBk&list=PLGPckJAmiZCR3BIPhpmOL3l0wC6hBCk6W&index=1 Watch the Series: https://www.youtube.com/playlist?list=PLGPckJAmiZCR3BIPhpmOL3l0wC6hBCk6W joern: https://joern.io/ RedEye Repository: https://github.com/cisagov/RedEye β†’ Twitch Subscription: https://www.twitch.tv/products/liveoverflow β†’ per Video: https://www.patreon.com/join/liveoverflow β†’ per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join Chapters: 00:00 - Intro 00:31 - Recap: Research with CodeQL 01:51 - Setting Up joern 07:00 - First Tests with joern 15:31 - Realizing We Can Use Regex 20:06 - TypeScript vs. Transpiled JavaScript 21:25 - decorators in Transpiled JavaScript 35:23 - Building the Query 37:24 - Outro =[ πŸ“„ Info. ]= Main Channel: https://youtube.com/@LiveOverflow Twitch: https://twitch.tv/LiveOverflow =[ πŸ• Social ]= β†’ Twitter: https://twitter.com/LiveOverflow/ β†’ TikTok: https://www.tiktok.com/@liveoverflow_ β†’ Website: https://liveoverflow.com/ β†’ Subreddit: https://www.reddit.com/r/LiveOverflow/ β†’ Facebook: https://www.facebook.com/LiveOverflow/ =[ πŸ“„ P.S. ]= #liveoverflow

Download

0 formats

No download links available.

Using joern to Find GraphQL Authorization Issue | NatokHD