33030 подписчиков
27 видео
Inconsistent handling of exceptional input-Web Security Academy
Web cache poisoning via ambiguous requests-Web Security Academy
Password reset poisoning via dangling markup-Web Security Academy
CSRF where token validation depends on request method-Web Security Academy
Configure Burp Suite Certificate and Foxy Proxy in Firefox and Chrome
Blind OS command injection with out of band data exfiltration-Web Security Academy
CORS vulnerability with internal network pivot attack-Web Security Academy
Reflected XSS protected by CSP, with CSP bypass-Web Security Academy
Clobbering DOM attributes to bypass HTML filters-Web Security Academy
Exploiting XSS to perform CSRF-Web Security Academy
Reflected XSS into HTML context with most tags and attributes blocked
DOM XSS in jQuery anchor href attribute sink using location.search source-Web Security Academy
Exploiting Java deserialization with Apache Commons-Web Security Academy(PortSwigger)
SQL injection attack, listing the database contents on non Oracle databases-Web Security Academy
Configure Burp Suite Certificate and Foxy Proxy in Firefox and Chrome Full video link in description