51414 подписчиков
345 видео
24.1 Lab: HTTP request smuggling, confirming a CL.TE vulnerability via differential responses | 2024
4.3 Lab: Blind OS command injection with output redirection - Karthikeyan Nagaraj | 2024
4.2 Lab: Lab: Blind OS command injection with time delays | 2024
18.4 Lab: Arbitrary object injection in PHP | Portswigger Labs
14.30 Lab: Reflected XSS protected by CSP, with CSP bypass
13.23 Lab: Reflected XSS into HTML context with most tags and attributes blocked | 2024
1.9 Lab: Visible error-based SQL injection | 2023
18.2 Lab: Exploiting Java deserialization with Apache Commons - Karthikeyan Nagaraj | 2024
4.1 Lab: OS command injection, simple case | 2023
8.2 Lab: Web shell upload via Content-Type restriction bypass | 2023
6.3.1 Lab: Source code disclosure via backup files | 2023
7.2 Lab: Unprotected admin functionality with unpredictable URL | 2023
Advent of Cyber 2024 [ Day 5 ] Writeup with Answers | TryHackMe Walkthrough
1.13 Lab: Blind SQL injection with out-of-band data exfiltration | 2023
1.17 Lab: SQL injection attack, listing the database contents on non-Oracle databases | 2023
Advent of Cyber 2023 - Day 10 Writeup with Answers by Karthikeyan Nagaraj | TryHackMe
Database Schema - SQL Injection | OWASP Juice Shop Solution
13.1 Lab: Reflected XSS into HTML context with nothing encoded | 2023
Login Jim - SQL Injection | OWASP Juice Shop Solution
Login Admin - SQL Injection | OWASP Juice Shop Solution
8.1.1 Lab: Remote code execution via web shell upload | 2023.
8.5 Lab: Web shell upload via obfuscated file extension - Karthikeyan Nagaraj | 2024
1.16 Lab: SQL injection attack, querying the database type and version on MySQL and Microsoft | 2023
28.3 Lab: Server-side template injection using documentation - Karthikeyan Nagaraj
Web3 Sandbox - Broken Access Control | OWASP Juice Shop Solution
Advent of Cyber 2024 [ Day 10] Writeup with Answers | TryHackMe Walkthrough
The Lazy Script in Kali Linux - Automate Penetration Testing!
1.15 Lab: SQL injection attack, querying the database type and version on Oracle | 2023
6.3.2 Lab: Source code disclosure via backup files | 2023
28.4 Lab: Server-side template injection in an unknown language with a documented exploit
18.3 Using application functionality to exploit insecure deserialization
Upload Type - Improper Input Validation | OWASP Juice Shop Solution
Access Log - Sensitive Data Exposure | OWASP Juice Shop Solution
25.6 Lab: Web cache poisoning via an unkeyed query parameter - Karthikeyan Nagaraj | 2024
HOW TO SEND BLANK SMS TEXT MESSAGE - Send an Empty Message to Anyone with an Android
17.1 Lab: Manipulating WebSocket messages to exploit vulnerabilities 2023
28.2 Lab: Basic server-side template injection (code context) - Karthikeyan Nagaraj | 2024
Advent of Cyber 2023 - Day 20 Writeup with Answers by Karthikeyan Nagaraj | TryHackMe Walkthrough
13.14 Lab: Reflected XSS into HTML context with most tags and attributes blocked | 2024
16.1 Lab: Basic clickjacking with CSRF token protection | 2023
8.4 Lab: Web shell upload via extension blacklist bypass - Karthikeyan Nagaraj | 2024
14.6 Lab: CSRF Vulnerability where token validation depends on request method