No description
Find a file
2020-10-30 21:10:00 +01:00
.github
_template_vuln
Account Takeover
API Key Leaks
AWS Amazon Bucket S3
Command Injection
CORS Misconfiguration Update README.md 2020-10-25 14:01:53 +01:00
CRLF Injection CORS and CRLF README.md updated 2020-10-25 11:07:50 +01:00
CSRF Injection
CSV Injection
CVE Exploits
Directory Traversal
File Inclusion Specifying alternative access method through SSH 2020-10-25 02:51:07 -07:00
GraphQL Injection
Insecure Deserialization Adding marshalsec tool & references 2020-10-26 14:43:16 +00:00
Insecure Direct Object References
Insecure Management Interface Add Springboot Actuator RCE 2020-10-28 12:05:12 -04:00
Insecure Source Code Management
JSON Web Token
Kubernetes
LaTeX Injection
LDAP Injection
Methodology and Resources Remote Desktop Services Shadowing 2020-10-30 21:10:00 +01:00
NoSQL Injection
OAuth
Open Redirect
Race Condition
Request Smuggling
SAML Injection
Server Side Request Forgery
Server Side Template Injection
SQL Injection Remote Desktop Services Shadowing 2020-10-30 21:10:00 +01:00
Tabnabbing Update README.md 2020-10-20 11:34:02 +02:00
Type Juggling Added a brief overview for type juggling 2020-10-25 19:19:44 +00:00
Upload Insecure Files
Web Cache Deception
Web Sockets
XPATH Injection
XSLT Injection
XSS Injection little update 2020-10-27 14:10:35 +01:00
XXE Injection
.gitignore
BOOKS.md
CONTRIBUTING.md
LICENSE
README.md
YOUTUBE.md

Payloads All The Things Tweet

A list of useful payloads and bypasses for Web Application Security. Feel free to improve with your payloads and techniques ! I ❤️ pull requests :)

You can also contribute with a 🍻 IRL, or using the sponsor button.

Every section contains the following files, you can use the _template_vuln folder to create a new chapter:

  • README.md - vulnerability description and how to exploit it, including several payloads
  • Intruder - a set of files to give to Burp Intruder
  • Images - pictures for the README.md
  • Files - some files referenced in the README.md

You might also like the Methodology and Resources folder :

You want more ? Check the Books and Youtube videos selections.