HackTricks News Bot
|
399a99eefa
|
Add content from: HTB Nocturnal: IDOR → Command Injection → Root via ISPConfig...
- Remove searchindex.js (auto-generated file)
|
2025-08-27 19:21:10 +00:00 |
|
HackTricks News Bot
|
7d05801e3f
|
Add content from: VTENEXT 25.02 – a three-way path to RCE
|
2025-08-26 12:57:50 +00:00 |
|
SirBroccoli
|
50c33567a2
|
Update proxy-waf-protections-bypass.md
|
2025-08-22 13:06:29 +02:00 |
|
SirBroccoli
|
6f039920c0
|
Fix reference formatting in HTTP request smuggling README
Updated reference formatting in README for clarity.
|
2025-08-22 13:05:45 +02:00 |
|
HackTricks News Bot
|
f740b52e29
|
Add content from: Research Update: Enhanced src/pentesting-web/xs-search/cooki...
|
2025-08-22 01:29:27 +00:00 |
|
SirBroccoli
|
4d90890835
|
Merge branch 'master' into update_Android_Malware_Promises_Energy_Subsidy_to_Steal_F_20250820_125045
|
2025-08-21 14:49:47 +02:00 |
|
SirBroccoli
|
c131632a85
|
Merge branch 'master' into update_FiberGateway_GR241AG_-_Full_Exploit_Chain_20250820_124033
|
2025-08-21 12:28:41 +02:00 |
|
SirBroccoli
|
8074b77c61
|
Merge pull request #1302 from HackTricks-wiki/update_How_I_found_a_0-Click_Account_takeover_in_a_public_20250819_012746
How I found a 0-Click Account takeover in a public BBP and l...
|
2025-08-21 08:02:20 +02:00 |
|
SirBroccoli
|
f7ed4e8aeb
|
Merge pull request #1305 from HackTricks-wiki/research_update_src_pentesting-web_dependency-confusion_20250819_082704
Research Update Enhanced src/pentesting-web/dependency-confu...
|
2025-08-21 04:29:40 +02:00 |
|
carlospolop
|
20c36ad7a4
|
f
|
2025-08-20 21:24:24 +02:00 |
|
SirBroccoli
|
1f9975e782
|
Merge pull request #1308 from HackTricks-wiki/update_Beware_the_false_false_positive__how_to_distinguis_20250819_184719
Beware the false false‑positive how to distinguish HTTP pipe...
|
2025-08-20 18:02:08 +02:00 |
|
SirBroccoli
|
0a9d007403
|
Merge pull request #1310 from HackTricks-wiki/update_Marshal_madness__A_brief_history_of_Ruby_deseriali_20250820_063337
Marshal madness A brief history of Ruby deserialization expl...
|
2025-08-20 16:01:52 +02:00 |
|
HackTricks News Bot
|
0ef4e28704
|
Add content from: Android Malware Promises Energy Subsidy to Steal Financial D...
|
2025-08-20 12:52:33 +00:00 |
|
HackTricks News Bot
|
4b90965712
|
Add content from: FiberGateway GR241AG - Full Exploit Chain
|
2025-08-20 12:46:23 +00:00 |
|
SirBroccoli
|
b48c4084e5
|
Update README.md
|
2025-08-20 12:53:48 +02:00 |
|
carlospolop
|
e8f19acfe9
|
f
|
2025-08-20 10:56:12 +02:00 |
|
HackTricks News Bot
|
a919fe6dc4
|
Add content from: Marshal madness: A brief history of Ruby deserialization exp...
|
2025-08-20 06:36:55 +00:00 |
|
SirBroccoli
|
4172fc66f1
|
Merge pull request #1242 from HackTricks-wiki/research_update_src_pentesting-web_sql-injection_oracle-injection_20250805_162114
Research Update Enhanced src/pentesting-web/sql-injection/or...
|
2025-08-20 02:05:30 +02:00 |
|
carlospolop
|
2a97a31214
|
f
|
2025-08-19 23:49:07 +02:00 |
|
SirBroccoli
|
06d3a6fa31
|
Merge pull request #1253 from HackTricks-wiki/research_update_src_pentesting-web_xss-cross-site-scripting_iframes-in-xss-and-csp_20250807_014324
Research Update Enhanced src/pentesting-web/xss-cross-site-s...
|
2025-08-19 22:02:05 +02:00 |
|
HackTricks News Bot
|
6e1ab178f5
|
Add content from: Beware the false false‑positive: how to distinguish HTTP pip...
|
2025-08-19 18:58:27 +00:00 |
|
HackTricks News Bot
|
f72294e745
|
Add content from: Research Update: Enhanced src/pentesting-web/dependency-conf...
|
2025-08-19 08:31:53 +00:00 |
|
HackTricks News Bot
|
d6a776e9d0
|
Add content from: How I found a 0-Click Account takeover in a public BBP and l...
|
2025-08-19 01:31:47 +00:00 |
|
SirBroccoli
|
831661ebb6
|
Update iframes-in-xss-and-csp.md
|
2025-08-18 15:50:48 +02:00 |
|
HackTricks News Bot
|
5d3a70fc01
|
Add content from: From Support Ticket to Zero Day
|
2025-08-16 12:42:17 +00:00 |
|
SirBroccoli
|
c4207757ce
|
Merge pull request #1271 from HackTricks-wiki/research_update_src_pentesting-web_nosql-injection_20250811_082826
Research Update Enhanced src/pentesting-web/nosql-injection....
|
2025-08-14 02:05:20 +02:00 |
|
HackTricks News Bot
|
8af174c0ea
|
Add content from: Extraction of Synology Encrypted Archives - Pwn2Own Ireland ...
|
2025-08-11 12:49:04 +00:00 |
|
HackTricks News Bot
|
76c4ff33ed
|
Add content from: Research Update: Enhanced src/pentesting-web/nosql-injection...
|
2025-08-11 08:31:13 +00:00 |
|
SirBroccoli
|
358b8dcfa5
|
Merge pull request #1245 from HackTricks-wiki/research_update_src_pentesting-web_deserialization_exploiting-__viewstate-parameter_20250806_014331
Research Update Enhanced src/pentesting-web/deserialization/...
|
2025-08-10 20:01:59 +02:00 |
|
SirBroccoli
|
b22c60801c
|
Update exploiting-__viewstate-parameter.md
|
2025-08-10 14:29:54 +02:00 |
|
HackTricks News Bot
|
189ace9158
|
Add content from: Research Update: Enhanced src/pentesting-web/xss-cross-site-...
|
2025-08-07 01:45:59 +00:00 |
|
HackTricks News Bot
|
b5c7e9c7b5
|
Add content from: Critical Vulnerability Impacting Over 100K Sites Patched in ...
|
2025-08-06 18:32:46 +00:00 |
|
HackTricks News Bot
|
1018f5af23
|
Add content from: Research Update: Enhanced src/pentesting-web/deserialization...
|
2025-08-06 01:46:06 +00:00 |
|
HackTricks News Bot
|
1a50bdc177
|
Add content from: Research Update: Enhanced src/pentesting-web/sql-injection/o...
|
2025-08-05 16:24:44 +00:00 |
|
SirBroccoli
|
5fe8a54b20
|
Merge pull request #1217 from HackTricks-wiki/research_update_src_pentesting-web_xss-cross-site-scripting_dom-invader_20250731_014311
Research Update Enhanced src/pentesting-web/xss-cross-site-s...
|
2025-08-05 02:06:08 +02:00 |
|
SirBroccoli
|
ac8f184bff
|
Merge pull request #1224 from HackTricks-wiki/research_update_src_pentesting-web_json-xml-yaml-hacking_20250801_015159
Research Update Enhanced src/pentesting-web/json-xml-yaml-ha...
|
2025-08-04 22:01:55 +02:00 |
|
SirBroccoli
|
8e1ca72db1
|
Merge pull request #1227 from HackTricks-wiki/research_update_src_pentesting-web_xss-cross-site-scripting_pdf-injection_20250801_162631
Research Update Enhanced src/pentesting-web/xss-cross-site-s...
|
2025-08-04 20:01:58 +02:00 |
|
SirBroccoli
|
f2f590cee2
|
Merge pull request #1230 from HackTricks-wiki/research_update_src_pentesting-web_deserialization_nodejs-proto-prototype-pollution_client-side-prototype-pollution_20250802_162356
Research Update Enhanced src/pentesting-web/deserialization/...
|
2025-08-04 18:02:22 +02:00 |
|
SirBroccoli
|
500e9aa476
|
Update dom-invader.md
|
2025-08-04 11:47:40 +02:00 |
|
HackTricks News Bot
|
de44ea7065
|
Add content from: Research Update: Enhanced src/pentesting-web/deserialization...
|
2025-08-03 08:27:42 +00:00 |
|
HackTricks News Bot
|
d016b78d3d
|
Add content from: Research Update: Enhanced src/pentesting-web/deserialization...
|
2025-08-02 16:25:03 +00:00 |
|
HackTricks News Bot
|
200cd44508
|
Add content from: Research Update: Enhanced src/pentesting-web/xss-cross-site-...
|
2025-08-01 16:27:26 +00:00 |
|
HackTricks News Bot
|
ebd4800ae1
|
Add content from: Research Update: Enhanced src/pentesting-web/json-xml-yaml-h...
|
2025-08-01 01:53:55 +00:00 |
|
HackTricks News Bot
|
57208abfd4
|
Add content from: Research Update: Enhanced src/pentesting-web/xss-cross-site-...
|
2025-07-31 01:44:28 +00:00 |
|
HackTricks News Bot
|
b4496aea9a
|
Add content from: SQLMap: Testing SQL Database Vulnerabilities
|
2025-07-29 18:42:06 +00:00 |
|
SirBroccoli
|
c892f948e1
|
Merge pull request #1197 from HackTricks-wiki/update_YSoNet___NET_Deserialization_Payload_Generator_20250727_123821
YSoNet .NET Deserialization Payload Generator
|
2025-07-29 12:01:44 +02:00 |
|
SirBroccoli
|
4ab5c29ae3
|
Merge pull request #1181 from HackTricks-wiki/research_update_src_pentesting-web_deserialization_basic-java-deserialization-objectinputstream-readobject_20250724_162255
Research Update Enhanced src/pentesting-web/deserialization/...
|
2025-07-28 20:02:00 +02:00 |
|
HackTricks News Bot
|
22aa5b03a5
|
Add content from: YSoNet: .NET Deserialization Payload Generator
|
2025-07-27 12:39:35 +00:00 |
|
HackTricks News Bot
|
eb270d7e87
|
Add content from: CVE-2025-27136 – LocalS3 CreateBucketConfiguration XXE Injec...
|
2025-07-25 18:32:48 +00:00 |
|
HackTricks News Bot
|
e2cff2bd2c
|
Add content from: Research Update: Enhanced src/pentesting-web/deserialization...
|
2025-07-24 16:24:14 +00:00 |
|