TBD - Web App Security

Conduct a thorough Penetration test against web applications.

This document is still in progress...

Introduction

Introduction - Study Guide

▶️ Same Origin

▶️ HTTP Cookies and Session

▶️ Burp Suite

▶️ OWASP Zap

🧪 WebApp Labs - Introduction

Information Gathering

Information Gathering - Study Guide

▶️ Web App Information Gathering

▶️ Web App Fingerprinting

▶️ Dirbuster

▶️ Subdomain Enumeration

▶️ Crawling and Spidering

Cross Site Scripting

Cross Site Scripting - Study Guide

▶️ Cross Site Scripting

▶️ Dom XSS

▶️ XSS Beef

SQL Injections

SQL Injections - Study Guide

▶️ Finding SQL Injection

▶️ Exploiting In-Band SQL Injections

▶️ Exploiting Error-Based SQL Injection

▶️ Exploiting Blind SQL Injection

▶️ SQL Injection Basics

▶️ SQLmap Basics

🧪 WebApp Labs - Web Application Attacks

Other Common Web Attacks

Other Common Web Attacks - Study Guide

▶️ Session Hijacking and Fixation

▶️ Cross Site Request Forgery

▶️ Files and Resources Vulnerabilities

Last updated