660 подписчиков
301 видео
Exploiting NoSQL injection to extract data Lab#03
XXE Lab09# Exploiting XXE via image file upload - Web Security Academy
Server Side Template Injection (SSTI) Lab-01
Server-side template injection in an unknown language with a documented exploit Lab04
SQL Injection Lab12# Part02 Blind SQL Injection with Conditional Error - Web Security Academy
Escape Hackthbox Walkthrough
Web cache poisoning via a fat GET request Lab#10
Web Cache Poisoning with an unkeyed header - Lab#01
Reflected XSS in canonical link tag - Lab#17
Exploiting an API endpoint using documentation - Lab#01
Web LLM Attacks
Reflected XSS with AngularJS sandbox escape and CSP - Lab26
Basic server-side template injection (code context) Lab02
Reflected XSS with AngularJS sandbox escape without strings - Lab#25
CSRF where token validation depends on token being present - Lab#03
Server Side Template Injection (SSTI) with a custom exploit - Lab#07
Server-side template injection using documentation (SSTI) - Lab#03
Bagel Hackthebox Walkthrough
CSRF where token validation depends on request method - Lab#02
SQL injection attack, listing the database contents on non-Oracle databases - Lab#09
NMAP UDP SCAN
AWKWARD Hackthebox Walkthrough Part#01
Web Sockets Security Vulnerabilities
Fuzzing parameter - Lab#04 - Part#02
Exploiting server-side parameter pollution in a query string - Lab#04
Web Cache Poisoning with multiple headers - Lab#03
Indirect prompt injection
Exploiting a mass assignment vulnerability - Lab#03
Expert System and Machine Learning
Exploiting server-side parameter pollution in a REST URL - Lab#05
Web cache poisoning via an unkeyed query parameter Lab#08
SOAP vs REST API
CSRF vulnerability with no defenses - Lab#01
NMAP Firewall Detection (ACK-Probing)
What is Cross-site request forgery?
Host validation bypass via connection state attack - Lab#06
Devzat Hackthebox Walkthrough
OAuth2.0 Authorization code vs Implicit grant types
Blind OS Command Injection Lab05 with out-of-band data exfiltration
Blind SQL Injection with Conditional Responses - Web Security Academy - Lab#11 Part01
Reflected XSS into a JS string with angle brackets & " HTML-encoded & single quotes escaped - Lab#19
Detecting server-side prototype pollution without polluted property reflection - Lab#07
SQL injection attack, querying the database type and version on MySQL and Microsoft - Lab#08
File Upload Vulnerability Lab02# - Web Security Academy
GraphQL API Vulnerabilities Lab#02
PIT-Hackthebox-SNMP-ENUMERATION
Developing a custom gadget chain for PHP deserialization - Lab#09
Arbitrary object injection in PHP - Lab#04
Reflected XSS into HTML context with most tags and attributes blocked - Lab#14
Blind OS Command Injection Lab04 with out-of-band interaction
OS Command Injection Lab01 simple case