πŸ“–
Notes
search
⌘Ctrlk
πŸ“–
Notes
  • πŸ™ŒWelcome!
  • CyberSecurity
    • Penetration Testing
      • ELearnSecurity
      • PortSwigger
      • TryHackMe
        • Main Methodology
          • 1. Reconnaissance
          • 2. Enumeration/Scanning
          • 3. Gaining Access / Exploitation
            • Buffer Overflow
            • Cryptography
            • Evasion Techniques
            • Shells
            • Web Applications
              • OWASP Top 10
              • File Upload Vulnerabilities
              • Authentication Vulnerability
              • XML External Entity (XXE)
              • Cross-Site Scripting (XSS)
              • ZTH: Obscure Web Vulns
              • Server Side Request Forgery (SSRF)
              • Insecure Direct Object Reference (IDOR)
              • ZTH : Continued
              • File Inclusion Vulnerability
            • Windows Applications
          • 4. Post Exploitation
          • 5. Covering Tracks
          • 6. Reporting
        • Networking Concepts
        • Scripting
        • Web Extensions
      • Miscellaneous
    • Blue Teaming
  • DevOps
    • Infrastructure as a Code (IaC)
    • Orchestration
  • Development
    • Blockchain
    • Backend
    • Database
    • Testing
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. CyberSecuritychevron-right
  2. Penetration Testingchevron-right
  3. TryHackMechevron-right
  4. Main Methodologychevron-right
  5. 3. Gaining Access / Exploitation

Web Applications

OWASP Top 10chevron-rightFile Upload Vulnerabilitieschevron-rightAuthentication Vulnerabilitychevron-rightXML External Entity (XXE)chevron-rightCross-Site Scripting (XSS)chevron-rightZTH: Obscure Web Vulnschevron-rightServer Side Request Forgery (SSRF)chevron-rightInsecure Direct Object Reference (IDOR)chevron-rightZTH : Continuedchevron-rightFile Inclusion Vulnerabilitychevron-right
PreviousSocatchevron-leftNextOWASP Top 10chevron-right

Last updated 2 years ago