πNew WriteupβοΈ
βββββββββββββββ
πDate: Sun, 22 Oct 2023 06:21:50 GMT
βββββββββββββββ
βοΈTitle: Lab:6
βββββββββββββββ
πLink: https://medium.com/p/e4e6891ba7eb
βββββββββββββββ
Tags: #xss_vulnerability #bugs #webapplicationpentest #cybersecurity #xss_attack
βββββββββββββββ
πDate: Sun, 22 Oct 2023 06:21:50 GMT
βββββββββββββββ
βοΈTitle: Lab:6
βββββββββββββββ
πLink: https://medium.com/p/e4e6891ba7eb
βββββββββββββββ
Tags: #xss_vulnerability #bugs #webapplicationpentest #cybersecurity #xss_attack
Medium
Lab:6
Reflected XSS with some SVG markup allowed
πNew WriteupβοΈ
βββββββββββββββ
πDate: Wed, 25 Oct 2023 09:38:29 GMT
βββββββββββββββ
βοΈTitle: The Types Of Web Application Attacks
βββββββββββββββ
πLink: https://medium.com/p/cb4f26fbb9fd
βββββββββββββββ
Tags: #ethical_hacking #webapplicationpentest #bug_bounty #cybersecurity #attack
βββββββββββββββ
πDate: Wed, 25 Oct 2023 09:38:29 GMT
βββββββββββββββ
βοΈTitle: The Types Of Web Application Attacks
βββββββββββββββ
πLink: https://medium.com/p/cb4f26fbb9fd
βββββββββββββββ
Tags: #ethical_hacking #webapplicationpentest #bug_bounty #cybersecurity #attack
Medium
The Types Of Web Application Attacks
Web applications are vulnerable to various types of attacks that can compromise their security and functionality.
β€· Title: Old School Out-of-Band (OOB) SQL Injection Manual Approach
ββββββββββββββββββββββββ
πͺ Author: Anon Tuttu Venus
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 31 Dec 2024 19:46:42 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #sql_injection #bug_bounty #owasp_top_10 #sqli
ββββββββββββββββββββββββ
πͺ Author: Anon Tuttu Venus
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 31 Dec 2024 19:46:42 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #sql_injection #bug_bounty #owasp_top_10 #sqli
Medium
Old School Out-of-Band (OOB) SQL Injection Manual Approach
I recently discovered an Out-of-Band (OOB) SQL injection in a private program. I was able to crack it easily with basic payload hence Iβ¦
β€· Title: The Software Development Logic Behind Subfinder and Assetfinder
ββββββββββββββββββββββββ
πͺ Author: Onurcan GenΓ§
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 20 Feb 2025 22:02:03 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #web_application_security #penetration_testing #webapplicationpentest #domains
ββββββββββββββββββββββββ
πͺ Author: Onurcan GenΓ§
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 20 Feb 2025 22:02:03 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #web_application_security #penetration_testing #webapplicationpentest #domains
Medium
The Software Logic Behind Subfinder and Assetfinder
Subdomain enumeration is a critical first step in mapping out an organizationβs digital footprint.
β€· Title: Expanding Horizons in Cybersecurity: Medium and Large Scope-Based Recon
ββββββββββββββββββββββββ
πͺ Author: Otlhomame Thibelang
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 01 Mar 2025 22:42:56 GMT
ββββββββββββββββββββββββ
β Tags: #red_team_methodology #pentesting #reconnaissance #cybersecurity #webapplicationpentest
ββββββββββββββββββββββββ
πͺ Author: Otlhomame Thibelang
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 01 Mar 2025 22:42:56 GMT
ββββββββββββββββββββββββ
β Tags: #red_team_methodology #pentesting #reconnaissance #cybersecurity #webapplicationpentest
Medium
Expanding Horizons in Cybersecurity: Medium and Large Scope-Based Recon
Effective reconnaissance is considered the backbone of sound web application security in the ever-changing field of cybersecurity. Positiveβ¦
β€· Title: Unlocking the Mysteries of HTTP Status Codes: Letβs Learn Together
ββββββββββββββββββββββββ
πͺ Author: Tharindu Damith
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 02 Mar 2025 04:52:26 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #http_status_code #enumeration #webapplicationpentest #ethical_hacking
ββββββββββββββββββββββββ
πͺ Author: Tharindu Damith
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 02 Mar 2025 04:52:26 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #http_status_code #enumeration #webapplicationpentest #ethical_hacking
Medium
Unlocking the Mysteries of HTTP Status Codes: Letβs Learn Together
β -
β€· Title: Cross-Site Scripting (XSS): A Growing Web Security Threat
ββββββββββββββββββββββββ
πͺ Author: Otlhomame Thibelang
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 23 Mar 2025 08:10:03 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #cross_site_scripting #xss_attack #xss_vulnerability #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: Otlhomame Thibelang
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 23 Mar 2025 08:10:03 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #cross_site_scripting #xss_attack #xss_vulnerability #cybersecurity
Medium
Cross-Site Scripting (XSS): A Growing Web Security Threat
What is XSS?
β€· Title: OTP Flood Attack | Bug Bounty
ββββββββββββββββββββββββ
πͺ Author: A S manikandan
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 23 Mar 2025 12:13:55 GMT
ββββββββββββββββββββββββ
β Tags: #otp_flood_attack #webapplicationpentest #web_application_security #bug_hunter #cybersecurity
ββββββββββββββββββββββββ
πͺ Author: A S manikandan
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 23 Mar 2025 12:13:55 GMT
ββββββββββββββββββββββββ
β Tags: #otp_flood_attack #webapplicationpentest #web_application_security #bug_hunter #cybersecurity
Medium
OTP Flood Attack | Bug Bounty
Hi guys, I am back with an another scenario. Usually whenever we visit our friends or relatives home, we used to check the overall look ofβ¦
β€· Title: Blind SQL InjectionβββEasy Stuff
ββββββββββββββββββββββββ
πͺ Author: Saswath Vel
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 10 Apr 2025 02:15:37 GMT
ββββββββββββββββββββββββ
β Tags: #blind_sql_injection #cybersecurity #sql_injection #vapt #webapplicationpentest
ββββββββββββββββββββββββ
πͺ Author: Saswath Vel
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 10 Apr 2025 02:15:37 GMT
ββββββββββββββββββββββββ
β Tags: #blind_sql_injection #cybersecurity #sql_injection #vapt #webapplicationpentest
Medium
Blind SQL Injection β Easy Stuff
Hey There, Blind SQL injection occurs when an application is vulnerable to SQL injectionπ, but it doesnβt show the database error orβ¦
β€· Title: Web App Security Flaws: Identification, Exploitation & Mitigation
ββββββββββββββββββββββββ
πͺ Author: Gouthamanair
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 21 Apr 2025 02:30:19 GMT
ββββββββββββββββββββββββ
β Tags: #penetration_testing #webapplicationpentest #web_application_security #vulnerability_assessment #webapplicationassessment
ββββββββββββββββββββββββ
πͺ Author: Gouthamanair
ββββββββββββββββββββββββ
β΄΅ Time: Mon, 21 Apr 2025 02:30:19 GMT
ββββββββββββββββββββββββ
β Tags: #penetration_testing #webapplicationpentest #web_application_security #vulnerability_assessment #webapplicationassessment
Medium
Web App Security Flaws: Identification, Exploitation & Mitigation
π Introduction
β€· Title: The Invisible War Inside Your SaaS
ββββββββββββββββββββββββ
πͺ Author: echosso
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 02 Aug 2025 12:15:53 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #penetration_testing #devsecops #web_development #saas
ββββββββββββββββββββββββ
πͺ Author: echosso
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 02 Aug 2025 12:15:53 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #penetration_testing #devsecops #web_development #saas
Medium
The Invisible War Inside Your SaaS
Your SaaS platform is more than just code, itβs a dynamic, ever-evolving digital machine.
β€· Title: Open Redirect Vulnerability in SSO API
ββββββββββββββββββββββββ
πͺ Author: Ehtesham Ul Haq
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 31 Aug 2025 11:25:39 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #bug_bounty #writeup #pentesting #open_redirect
ββββββββββββββββββββββββ
πͺ Author: Ehtesham Ul Haq
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 31 Aug 2025 11:25:39 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #bug_bounty #writeup #pentesting #open_redirect
Medium
Open Redirect Vulnerability in SSO API
Free Article Link: Click for free!
β€· Title: TryHackMe-Hammer
ββββββββββββββββββββββββ
πͺ Author: Abdullah Al Ahad
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 24 Sep 2025 19:13:58 GMT
ββββββββββββββββββββββββ
β Tags: #hammer_walkthrough #webapplicationpentest #penetration_testing #tryhackme #tryhackme_walkthrough
ββββββββββββββββββββββββ
πͺ Author: Abdullah Al Ahad
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 24 Sep 2025 19:13:58 GMT
ββββββββββββββββββββββββ
β Tags: #hammer_walkthrough #webapplicationpentest #penetration_testing #tryhackme #tryhackme_walkthrough
Medium
TryHackMe-Hammer
βCompleting the Hammer Room: My Journey Through Web Application Pentesting on TryHackMeβ
β€· Title: Portswigger mystery lab write up -Business logic vulnerabilities: Authentication bypass via flawedβ¦
ββββββββββββββββββββββββ
πͺ Author: Hubert
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Oct 2025 17:45:04 GMT
ββββββββββββββββββββββββ
β Tags: #ctf_writeup #cyebrsecurity #webapplicationpentest #hacking #portswigger
ββββββββββββββββββββββββ
πͺ Author: Hubert
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 03 Oct 2025 17:45:04 GMT
ββββββββββββββββββββββββ
β Tags: #ctf_writeup #cyebrsecurity #webapplicationpentest #hacking #portswigger
Medium
Portswigger mystery lab write up -Business logic vulnerabilities: Authentication bypass via flawedβ¦
This is a description of the steps I took to solve a PortSwigger lab about business logic vulnerabilities [1]: Authentication bypass via aβ¦
β€· Title: When GraphQL becomes a backdoor: SSRF to RCE in a real-world GraphQL endpoint.
ββββββββββββββββββββββββ
πͺ Author: MrLionOfficial
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 11 Oct 2025 21:04:16 GMT
ββββββββββββββββββββββββ
β Tags: #graphql #cybersecurity #bug_bounty #webapplicationpentest #ethical_hacking
ββββββββββββββββββββββββ
πͺ Author: MrLionOfficial
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 11 Oct 2025 21:04:16 GMT
ββββββββββββββββββββββββ
β Tags: #graphql #cybersecurity #bug_bounty #webapplicationpentest #ethical_hacking
Medium
When GraphQL becomes a backdoor: SSRF to RCE in a real-world GraphQL endpoint.
How an unsafe GraphQL mutation allowed server-side request forgery and remote code executionβββand the defensive steps every GraphQL appβ¦
β€· Title: DVWAβββCommand Injection (Low e Medium): Guia prΓ‘tico
ββββββββββββββββββββββββ
πͺ Author: HeloΓsa TomΓ© de Araujo
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 02 Dec 2025 21:54:59 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #dvwa #webapplicationpentest
ββββββββββββββββββββββββ
πͺ Author: HeloΓsa TomΓ© de Araujo
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 02 Dec 2025 21:54:59 GMT
ββββββββββββββββββββββββ
β Tags: #cybersecurity #dvwa #webapplicationpentest
Medium
DVWA β Command Injection (Low e Medium): Guia prΓ‘tico
O DVWA (Damn Vulnerable Web Application) Γ© uma ferramenta feita para treinar seguranΓ§a ofensiva. Um dos mΓ³dulos Γ© o Command Injectionβ¦
β€· Title: SSRF DNS Rebinding Bypass Technique
ββββββββββββββββββββββββ
πͺ Author: Fatimahasan
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 07 Dec 2025 18:26:16 GMT
ββββββββββββββββββββββββ
β Tags: #filter_bypass #ssrf #webapplicationpentest #pentesting #bug_bounty
ββββββββββββββββββββββββ
πͺ Author: Fatimahasan
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 07 Dec 2025 18:26:16 GMT
ββββββββββββββββββββββββ
β Tags: #filter_bypass #ssrf #webapplicationpentest #pentesting #bug_bounty
Medium
SSRF DNS Rebinding Bypass Technique
What is DNS Rebinding?
β€· Title: How I found my first bug
ββββββββββββββββββββββββ
πͺ Author: Fatimahasan
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 03 Jan 2026 00:19:29 GMT
ββββββββββββββββββββββββ
β Tags: #bug_bounty #webapplicationpentest
ββββββββββββββββββββββββ
πͺ Author: Fatimahasan
ββββββββββββββββββββββββ
β΄΅ Time: Sat, 03 Jan 2026 00:19:29 GMT
ββββββββββββββββββββββββ
β Tags: #bug_bounty #webapplicationpentest
β€· Title: ΰ¦ΰ§ΰ§ΰ¦¬ ΰ¦
ΰ§ΰ¦―ΰ¦Ύΰ¦ͺΰ§ΰ¦²ΰ¦Ώΰ¦ΰ§ΰ¦Άΰ¦¨ ΰ¦ͺΰ§ΰ¦¨ΰ¦ΰ§ΰ¦Έΰ§ΰ¦ΰ¦Ώΰ¦ΰ§ΰ§ ΰ¦°ΰ¦Ώΰ¦ΰ¦¨ ΰ¦ΰ§ΰ¦²ΰ¦Έΰ§ΰ¦° বΰ§ΰ¦―বহার: ΰ¦ΰ¦ΰ¦ΰ¦Ώ ΰ¦ͺΰ§ΰ¦°ΰ§ΰ¦£ΰ¦Ύΰ¦ΰ§ΰ¦ ΰ¦ΰ¦Ύΰ¦ΰ¦‘
ββββββββββββββββββββββββ
πͺ Author: SecurityMindPro
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 18 Jan 2026 21:36:41 GMT
ββββββββββββββββββββββββ
β Tags: #web_testing #penetration_testing #webapplicationpentest
ββββββββββββββββββββββββ
πͺ Author: SecurityMindPro
ββββββββββββββββββββββββ
β΄΅ Time: Sun, 18 Jan 2026 21:36:41 GMT
ββββββββββββββββββββββββ
β Tags: #web_testing #penetration_testing #webapplicationpentest
Medium
ΰ¦ΰ§ΰ§ΰ¦¬ ΰ¦
ΰ§ΰ¦―ΰ¦Ύΰ¦ͺΰ§ΰ¦²ΰ¦Ώΰ¦ΰ§ΰ¦Άΰ¦¨ ΰ¦ͺΰ§ΰ¦¨ΰ¦ΰ§ΰ¦Έΰ§ΰ¦ΰ¦Ώΰ¦ΰ§ΰ§ ΰ¦°ΰ¦Ώΰ¦ΰ¦¨ ΰ¦ΰ§ΰ¦²ΰ¦Έΰ§ΰ¦° বΰ§ΰ¦―বহার: ΰ¦ΰ¦ΰ¦ΰ¦Ώ ΰ¦ͺΰ§ΰ¦°ΰ§ΰ¦£ΰ¦Ύΰ¦ΰ§ΰ¦ ΰ¦ΰ¦Ύΰ¦ΰ¦‘
ΰ¦Έΰ¦Ύΰ¦ΰ¦¬ΰ¦Ύΰ¦° ΰ¦Έΰ¦Ώΰ¦ΰ¦Ώΰ¦ΰ¦°ΰ¦Ώΰ¦ΰ¦Ώ ΰ¦ΰ¦¬ΰ¦ ΰ¦ͺΰ§ΰ¦¨ΰ¦Ώΰ¦ΰ§ΰ¦°ΰ§ΰ¦Άΰ¦¨ ΰ¦ΰ§ΰ¦Έΰ§ΰ¦ΰ¦Ώΰ¦ΰ§ΰ§ΰ¦° ΰ¦ΰ¦ΰ¦€ΰ§ ΰ¦ΰ¦ΰ¦ΰ¦Ώ বহΰ§ΰ¦² ΰ¦ͺΰ§ΰ¦°ΰ¦ΰ¦²ΰ¦Ώΰ¦€ ΰ¦ΰ¦₯ΰ¦Ύ ΰ¦ΰ¦ΰ§ββββΰ¦ΰ¦ͺনি ΰ¦―ΰ¦Ύ দΰ§ΰ¦ΰ¦€ΰ§ ΰ¦ͺΰ¦Ύΰ¦ΰ§ΰ¦ΰ§ΰ¦¨ না, ঀা ΰ¦ΰ¦ͺনি ΰ¦Ήΰ§ΰ¦―ΰ¦Ύΰ¦ ΰ¦ΰ¦°ΰ¦€ΰ§ ΰ¦ͺারবΰ§ΰ¦¨ নাΰ₯€β ΰ¦ΰ¦β¦
β€· Title: Web Application Penetration Testing: Methodology, Tools & Guide
ββββββββββββββββββββββββ
πͺ Author: Jamescantor
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 13 May 2026 16:27:11 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #web_penetration_testing #web_application_testing #penetration_testing
ββββββββββββββββββββββββ
πͺ Author: Jamescantor
ββββββββββββββββββββββββ
β΄΅ Time: Wed, 13 May 2026 16:27:11 GMT
ββββββββββββββββββββββββ
β Tags: #webapplicationpentest #web_penetration_testing #web_application_testing #penetration_testing
Medium
Web Application Penetration Testing: Methodology, Tools & Guide
When I first started learning web application penetration testing, I thought the job was mostly about tools and payloads. The moreβ¦