Web Hacking


Гео и язык канала: не указан, не указан
Категория: не указана


💻This channel has been opened to provide you with the necessary theoretical and practical infrastructure to detect security vulnerabilities in web-based applications.💻
@CEH_training
@OSCP_training
@pfsense
@WifiHacking

Связанные каналы

Гео и язык канала
не указан, не указан
Категория
не указана
Статистика
Фильтр публикаций




Bug Bounty Hunting Tip :-

If you can upload .zip file on target then:

1. Create a .php file (rce.php)

2. Compress it to a .zip file (file.zip)

3. Upload your .zip file on the vulnerable web application.

4. Trigger your RCE via:

( https://.com/index.php?page=zip://path/file.zip#rce.php )










Репост из: WiFi Hacking








sri-check | A Burp Suite extension for identifying missing Subresource Integrity attributes.

https://github.com/PortSwigger/sri-check










We have another new vector for the XSS cheat sheet! This one requires user interaction and uses the method attribute with the dialog value.

XSS


Here's an updated polyglot that uses the details tag and now breaks out of template strings too.







Показано 20 последних публикаций.

469

подписчиков
Статистика канала