Web 应用程序安全和 Pentest/CTF 的有用有效负载和绕过列表

Every section contains the following files, you can use the _template_vuln folder to create a new chapter::

  • README.md - vulnerability description and how to exploit it, including several payloads

  • Intruder - a set of files to give to Burp Intruder

  • lmages - pictures for the README.md

  • Files - some files referenced in the README.md

Project document content

API Key Leaks、AWS Amazon Bucket S3、Account Takeover、CORS Misconfiguration、CRLF Injection、CSRF Injection、CSV Injection、CVE Exploits、Command Injection、DNS Rebinding、Dependency Confusion、Directory Traversal、File Inclusion、GraphQL Injection、HTTP Parameter Pollution......


