|
.github
|
Github Action - Markdown Linting for PR
|
2024-11-13 12:29:42 +01:00 |
|
_LEARNING_AND_SOCIALS
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
_template_vuln
|
Update _template_vuln page
|
2024-11-13 13:39:19 +01:00 |
|
Account Takeover
|
Fix markdown style issues in Account Takeover
|
2024-11-13 15:30:33 +01:00 |
|
API Key Leaks
|
Markdown Linting - API, Business Logic, Clickjacking
|
2025-03-24 16:16:58 +01:00 |
|
Business Logic Errors
|
Markdown Linting - API, Business Logic, Clickjacking
|
2025-03-24 16:16:58 +01:00 |
|
Clickjacking
|
Markdown Linting - API, Business Logic, Clickjacking
|
2025-03-24 16:16:58 +01:00 |
|
Client Side Path Traversal
|
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
|
2025-03-24 16:52:42 +01:00 |
|
Command Injection
|
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
|
2025-03-24 16:52:42 +01:00 |
|
CORS Misconfiguration
|
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
|
2025-03-24 16:52:42 +01:00 |
|
CRLF Injection
|
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
|
2025-03-24 16:52:42 +01:00 |
|
Cross-Site Request Forgery
|
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
|
2025-03-24 16:52:42 +01:00 |
|
CSV Injection
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
CVE Exploits
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
Denial of Service
|
XXE - Fix typo
|
2025-03-17 17:02:00 +01:00 |
|
Dependency Confusion
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
Directory Traversal
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
DNS Rebinding
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
DOM Clobbering
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
External Variable Modification
|
External Variable Modification
|
2025-03-07 12:15:00 +01:00 |
|
File Inclusion
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
Google Web Toolkit
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
GraphQL Injection
|
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
|
2025-03-26 16:22:53 +01:00 |
|
Headless Browser
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Hidden Parameters
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
HTTP Parameter Pollution
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Insecure Deserialization
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Insecure Direct Object References
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Insecure Management Interface
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Insecure Randomness
|
Markdown Linting - Parameters, Browsers, Deserialization Randomness
|
2025-03-26 16:33:07 +01:00 |
|
Insecure Source Code Management
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
Java RMI
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
JSON Web Token
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
LaTeX Injection
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
LDAP Injection
|
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
|
2025-03-26 16:48:22 +01:00 |
|
Mass Assignment
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Methodology and Resources
|
Markdown Linting - Methodology
|
2025-03-24 16:00:54 +01:00 |
|
NoSQL Injection
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
OAuth Misconfiguration
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Open Redirect
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
ORM Leak
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Prompt Injection
|
Prompt Injection Update
|
2025-03-17 19:50:19 +01:00 |
|
Prototype Pollution
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Race Condition
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Regular Expression
|
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
|
2025-03-26 17:06:01 +01:00 |
|
Request Smuggling
|
Regex + SSRF
|
2024-11-30 19:48:32 +01:00 |
|
SAML Injection
|
Normalize page header for SSTI, SAML, SSI
|
2024-11-10 19:14:16 +01:00 |
|
Server Side Include Injection
|
Edge Side Inclusion
|
2024-11-18 16:51:28 +01:00 |
|
Server Side Request Forgery
|
Regex + SSRF
|
2024-11-30 19:48:32 +01:00 |
|
Server Side Template Injection
|
External Variable Modification
|
2025-03-07 12:15:00 +01:00 |
|
SQL Injection
|
DB2 Command Execution with QSYS2.QCMDEXC
|
2025-03-24 15:42:22 +01:00 |
|
Tabnabbing
|
Normalize page header for SQLi, Upload, Cache Deception
|
2024-11-10 20:49:52 +01:00 |
|
Type Juggling
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
Upload Insecure Files
|
Prompt Injection Update
|
2025-03-17 19:50:19 +01:00 |
|
Web Cache Deception
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
Web Sockets
|
Prompt Injection Update
|
2025-03-17 19:50:19 +01:00 |
|
XPATH Injection
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
XSLT Injection
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
XSS Injection
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
XXE Injection
|
XXE - Fix typo
|
2025-03-17 17:02:00 +01:00 |
|
Zip Slip
|
XPATH + XSS + XXE + XSLT
|
2024-11-30 21:14:51 +01:00 |
|
.gitignore
|
YAML Deserialization
|
2022-09-16 16:37:40 +02:00 |
|
CONTRIBUTING.md
|
CONTRIBUTING page updates - adding rules
|
2024-11-13 14:24:09 +01:00 |
|
custom.css
|
CSS - Update style color + Blind SQL Oracle
|
2023-12-10 13:27:21 +01:00 |
|
DISCLAIMER.md
|
Markdown Linting - Methodology
|
2025-03-24 16:00:54 +01:00 |
|
LICENSE
|
Create License
|
2019-05-25 16:27:35 +02:00 |
|
mkdocs.yml
|
SSTI references updates
|
2024-11-03 20:54:01 +01:00 |
|
README.md
|
Markdown Linting - Methodology
|
2025-03-24 16:00:54 +01:00 |