.github
Update GitHub Actions
2025-10-01 14:52:10 +02:00
_LEARNING_AND_SOCIALS
Fix markdown linting
2025-11-15 17:36:38 +01:00
_template_vuln
Update _template_vuln page
2024-11-13 13:39:19 +01:00
Account Takeover
Fix several typos
2025-07-29 15:34:52 +02:00
API Key Leaks
ORM leak lint + crapsecret
2026-01-02 19:46:23 +01:00
Brute Force Rate Limit
SQLite extensions
2025-12-07 19:52:51 +01:00
Business Logic Errors
Rounding Errors
2025-08-03 16:32:40 +02:00
Clickjacking
Markdown Linting - API, Business Logic, Clickjacking
2025-03-24 16:16:58 +01:00
Client Side Path Traversal
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
2025-03-24 16:52:42 +01:00
Command Injection
Lint fix
2025-08-14 11:09:47 +02:00
CORS Misconfiguration
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
2025-03-24 16:52:42 +01:00
CRLF Injection
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
2025-03-24 16:52:42 +01:00
Cross-Site Request Forgery
Markdown Linting - CORS, CRLF, CSPT, CSRF, Command Injection
2025-03-24 16:52:42 +01:00
CSV Injection
Fix several typos
2025-07-29 15:34:52 +02:00
CVE Exploits
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
2025-03-26 16:22:53 +01:00
Denial of Service
XXE - Fix typo
2025-03-17 17:02:00 +01:00
Dependency Confusion
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
2025-03-26 16:22:53 +01:00
Directory Traversal
Fixed missing {FILE} placeholders
2025-10-31 14:22:13 +02:00
DNS Rebinding
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
2025-03-26 16:22:53 +01:00
DOM Clobbering
Virtual Hosts + Encoding and Transformations
2025-08-12 20:59:36 +02:00
Encoding Transformations
SQL injection - Fix linting errors
2025-08-13 12:07:35 +02:00
External Variable Modification
External Variable Modification
2025-03-07 12:15:00 +01:00
File Inclusion
Fix broken links
2025-03-27 11:16:36 +01:00
Google Web Toolkit
Markdown Linting - CSV, CVE, DBS, LFI, GWT, GraphQL
2025-03-26 16:22:53 +01:00
GraphQL Injection
Syntax Highlighting SSTI
2025-11-15 17:11:42 +01:00
Headless Browser
Reverse Proxy Misconfigurations
2025-07-24 14:06:52 +02:00
Hidden Parameters
Markdown Linting - Parameters, Browsers, Deserialization Randomness
2025-03-26 16:33:07 +01:00
HTTP Parameter Pollution
Markdown Linting - Parameters, Browsers, Deserialization Randomness
2025-03-26 16:33:07 +01:00
Insecure Deserialization
Indicators for deserialization
2025-12-12 11:32:33 +01:00
Insecure Direct Object References
Markdown Linting - Parameters, Browsers, Deserialization Randomness
2025-03-26 16:33:07 +01:00
Insecure Management Interface
Markdown Linting - Parameters, Browsers, Deserialization Randomness
2025-03-26 16:33:07 +01:00
Insecure Randomness
Rounding Errors
2025-08-03 16:32:40 +02:00
Insecure Source Code Management
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
2025-03-26 16:48:22 +01:00
Java RMI
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
2025-03-26 16:48:22 +01:00
JSON Web Token
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
2025-03-26 16:48:22 +01:00
LaTeX Injection
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
2025-03-26 16:48:22 +01:00
LDAP Injection
Markdown Linting - Source Code, JWT, RMI, LDAP, LaTeX
2025-03-26 16:48:22 +01:00
Mass Assignment
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
Methodology and Resources
Update Web Attack Surface.md
2025-10-02 10:50:07 +02:00
NoSQL Injection
Update NoSQL.txt
2025-04-21 16:59:08 +07:00
OAuth Misconfiguration
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
Open Redirect
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
ORM Leak
ORM leak lint + crapsecret
2026-01-02 19:46:23 +01:00
Prompt Injection
Update README.md
2025-08-06 22:30:25 +03:00
Prototype Pollution
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
Race Condition
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
Regular Expression
Markdown Linting - Mass Assignment, NoSQL, OAuth, Redirect
2025-03-26 17:06:01 +01:00
Request Smuggling
Markdown Linting - SSI, SSRF, SSTI
2025-03-26 17:49:42 +01:00
Reverse Proxy Misconfigurations
Reverse Proxy Misconfigurations
2025-07-24 14:06:52 +02:00
SAML Injection
ORM leak lint + crapsecret
2026-01-02 19:46:23 +01:00
Server Side Include Injection
SSI:
2026-01-03 05:20:04 +03:00
Server Side Request Forgery
Lint fix
2025-08-14 11:09:47 +02:00
Server Side Template Injection
SSI:
2026-01-03 05:20:04 +03:00
SQL Injection
SQLite extensions
2025-12-07 19:52:51 +01:00
Tabnabbing
Markdown Linting - SQL, Juggling, XSLT, XSS, Zip
2025-03-26 20:53:03 +01:00
Type Juggling
SQL injection - Generic Bypass (Space)
2025-07-26 22:54:45 +02:00
Upload Insecure Files
Syntax Highlighting SSTI
2025-11-15 17:11:42 +01:00
Virtual Hosts
Virtual Hosts + Encoding and Transformations
2025-08-12 20:59:36 +02:00
Web Cache Deception
2025-04-04 Add Detecting Web Cache Deception Content
2025-04-04 00:20:27 +08:00
Web Sockets
Headless Browser + JSON Jackson
2025-07-02 22:23:13 +02:00
XPATH Injection
Markdown Linting - SQL, Juggling, XSLT, XSS, Zip
2025-03-26 20:53:03 +01:00
XSLT Injection
Markdown Linting - SQL, Juggling, XSLT, XSS, Zip
2025-03-26 20:53:03 +01:00
XSS Injection
PDO Prepared Statements
2025-07-26 15:21:23 +02:00
XXE Injection
Fix markdown linting
2025-11-15 17:36:38 +01:00
Zip Slip
Markdown Linting - SQL, Juggling, XSLT, XSS, Zip
2025-03-26 20:53:03 +01:00
.gitignore
YAML Deserialization
2022-09-16 16:37:40 +02:00
CONTRIBUTING.md
Fix broken links
2025-03-27 11:16:36 +01:00
custom.css
CSS - Update style color + Blind SQL Oracle
2023-12-10 13:27:21 +01:00
DISCLAIMER.md
Markdown Linting - Methodology
2025-03-24 16:00:54 +01:00
LICENSE
Create License
2019-05-25 16:27:35 +02:00
mkdocs.yml
chore(docs): fix MkDocs edit link and polish README grammar
2025-09-19 15:13:54 +05:30
README.md
chore(docs): fix MkDocs edit link and polish README grammar
2025-09-19 15:13:54 +05:30