Search
Methodology
Penetration Tests
Web Apps & APIs
Cloud
Mobile Apps
Desktop Apps
Wireless / Wifi
Social Engineering
Capture the Flag
Physical
Blue Team
Purple Team
Red Team
Evasion & Bypass
Cheat Sheets
All Cheat Sheets
Databases
Languages & Formats
Operating Systems
Ports & Protocols
Security Controls
Tools
Walk-Through
Cybereco
Hack the Box (HTB)
Hackfest & iHack
NorthSec
Metasploitable2
SANS Holiday Hack
Vulnhub
WebSecurity Academy
(Hackerone)
(Mossé)
(Root Me)
(TryHackMe)
Blog
About
GitHub
LinkedIn
Category:
WebSecurityAcademy
WebSecurityAcademy (PortSwigger) – Web cache deception
WebSecurityAcademy (PortSwigger) – API testing
WebSecurityAcademy (PortSwigger) – Web LLM attacks
IN PROGRESS: WebSecurityAcademy (PortSwigger) – NoSQL Injection
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Race conditions
WebSecurityAcademy (PortSwigger) – Testing GraphQL APIs
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Prototype pollution
WebSecurityAcademy (PortSwigger) – Server-side template injection
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Web cache poisoning
IN PROGRESS: WebSecurityAcademy (PortSwigger) – DOM-based vulnerabilities
WebSecurityAcademy (PortSwigger) – Essential skills
IN PROGRESS: WebSecurityAcademy (PortSwigger) – OAuth authentication
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Insecure deserialization
WebSecurityAcademy (PortSwigger) – Business logic vulnerabilities
WebSecurityAcademy (PortSwigger) – Information disclosure
IN PROGRESS: WebSecurityAcademy (PortSwigger) – HTTP Host header attacks
WebSecurityAcademy (PortSwigger) – Cross-origin resource sharing (CORS)
WebSecurityAcademy (PortSwigger) – Authentication
WebSecurityAcademy (PortSwigger) – Access control vulnerabilities
WebSecurityAcademy (PortSwigger) – WebSockets
WebSecurityAcademy (PortSwigger) – Clickjacking
IN PROGRESS: WebSecurityAcademy (PortSwigger) – File upload vulnerabilities
WebSecurityAcademy (PortSwigger) – JWT
WebSecurityAcademy (PortSwigger) – OS command injection
WebSecurityAcademy (PortSwigger) – Directory Traversal
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Cross-site request forgery (CSRF)
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Cross-site scripting (XSS)
WebSecurityAcademy (PortSwigger) – SQL Injections
IN PROGRESS: WebSecurityAcademy (PortSwigger) – XML external entity (XXE) injection
IN PROGRESS: WebSecurityAcademy (PortSwigger) – Server-side request forgery (SSRF)
IN PROGRESS: WebSecurityAcademy (PortSwigger) – HTTP request smuggling