Intrusionz3r0
search
⌘Ctrlk
Intrusionz3r0-WriteupsHacktheboxGithubLinkedln
Intrusionz3r0
  • hand-waveWelcome
  • Windows Penetration Testing
  • Linux Penetration Testing
  • SOC Analyst
  • Malware Development
  • Social Engineering
  • Portforwarding and tunneling
  • File Transfer Techniques
  • Password Attacks
  • Enumeration
  • Hacking Web
    • Methodology
    • Vulnerabilities
      • Database Injections
      • Cross Site Scripting (XSS)
      • File path traversal/Local File Inclusion
      • File Upload Attacks
      • Command Injection
      • Insecure Direct Object Reference (IDOR)
      • XML External Entity (XXE) Injection
      • Web Mass Assignment Vulnerabilities
      • Log4Shell Exploitation Guide
      • Authentication
      • Business Vulnerabilities
      • Access control vulnerabilities
      • Server-Side Request Forgery (SSRF)
      • Cross-site request forgery (CSRF)
      • Cross-origin resource sharing (CORS)
      • Clickjacking
      • DOM-based vulnerabilities
      • JWT vulnerabilities
      • Password reset poisoning
      • Bypass 403 - Forbidden
    • Burpsuite through SOCKS5
  • Common Applications
  • Containers Pentesting
  • C2 Command and Control
  • Dark Web
  • Amazon Web Services Penetration testing
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Hacking Web

Vulnerabilities

Database Injectionschevron-rightCross Site Scripting (XSS)chevron-rightFile path traversal/Local File Inclusionchevron-rightFile Upload Attackschevron-rightCommand Injectionchevron-rightInsecure Direct Object Reference (IDOR)chevron-rightXML External Entity (XXE) Injectionchevron-rightWeb Mass Assignment Vulnerabilitieschevron-rightLog4Shell Exploitation Guidechevron-rightAuthenticationchevron-rightBusiness Vulnerabilitieschevron-rightAccess control vulnerabilitieschevron-rightServer-Side Request Forgery (SSRF)chevron-rightCross-site request forgery (CSRF)chevron-rightCross-origin resource sharing (CORS)chevron-rightClickjackingchevron-rightDOM-based vulnerabilitieschevron-rightJWT vulnerabilitieschevron-rightPassword reset poisoningchevron-rightBypass 403 - Forbiddenchevron-right
PreviousMethodologychevron-leftNextDatabase Injectionschevron-right

Last updated 1 year ago