Corb3nik / SQLi-CTFLinks
A training CTF covering non-blind SQL injection techniques
☆71Updated 7 years ago
Alternatives and similar repositories for SQLi-CTF
Users that are interested in SQLi-CTF are comparing it to the libraries listed below
Sorting:
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆346Updated 3 years ago
- ☆266Updated 6 years ago
- Solutions and write-ups from security-based competitions also known as Capture The Flag competition☆102Updated 5 years ago
- Contents for Node.Js Security Course☆343Updated 5 years ago
- Simple websites vulnerable to Server Side Template Injections(SSTI)☆409Updated 2 years ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆382Updated last year
- Lab for exploring SSRF vulnerabilities☆248Updated 4 years ago
- DNS rebinding toolkit☆255Updated 2 years ago
- Crack the shared secret of a HS256-signed JWT☆253Updated 2 years ago
- Writeups for Vulnhub's boot2root machines that I've done☆86Updated 2 years ago
- XXE Out of Band Server.☆172Updated 2 years ago
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆201Updated 6 years ago
- A mini webserver with FTP support for XXE payloads☆334Updated last year
- Lesser Known Web Attack Lab☆331Updated 5 years ago
- Java deserialization exploitation lab.☆235Updated 6 years ago
- HTTP file upload scanner for Burp Proxy☆415Updated 2 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆184Updated 5 years ago
- A cheat sheet for attacking SQLite via SQLi☆101Updated 9 years ago
- research☆151Updated last year
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆297Updated 2 years ago
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆317Updated 2 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 3 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆128Updated 2 years ago
- Sample vulnerable code and its exploit code☆190Updated 4 years ago
- When MVC magic turns black☆294Updated 5 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆264Updated 4 years ago
- Practice hacking JWT tokens☆116Updated 3 years ago
- HTTP file upload scanner for Burp Proxy☆490Updated last year
- SHELLING - a comprehensive OS command injection payload generator☆110Updated 6 years ago