Web Pentesting
Broken Access ControlOS Command InjectionSQL InjectionCross-Site-Scripting (XSS)File Upload Directory Traversal və Path TraversalCSRFXXE ClickjackingSSRFJWT (Json Web Token) Local&Remote File İnclusion401&403 BypassLogin BypassOpen RedirectUnicode InjectionSecurity MisconfigurationCRLF injectionLDAP InjectionCookies HackingCross site WebSocket hijacking (CSWSH)SSTI (Server Side Template Injection)CSTI (Client Side Template Injection)XSLT Server Side Injection (Extensible Stylesheet Languaje Transformations)Registration & Takeover VulnerabilitiesRegular expression Denial of Service - ReDoSReset/Forgotten Password BypassSAML HücumlarıReverse Tab NabbingWeb Tool - WFuzzXPATH enjeksiyonuServer-Side Includes (SSI) InjectionEdge Side Inclusion Injection (ESII)Race ConditionPostMessageParameter PollutionCache Poisoning and Cache DeceptionCaptcha Bypass
Last updated