128 Commits

Author SHA1 Message Date
SirBroccoli
24d32ecb5a Merge pull request #1105 from HackTricks-wiki/research_update_src_windows-hardening_active-directory-methodology_printnightmare_20250712_082222
Research Update Enhanced src/windows-hardening/active-direct...
2025-07-12 11:39:59 +02:00
carlospolop
e028317c2b Merge branch 'master' of github.com:HackTricks-wiki/hacktricks 2025-07-12 10:48:51 +02:00
carlospolop
23d3f5017d a 2025-07-12 10:48:33 +02:00
HackTricks News Bot
e3705cacd5 Add content from: Research Update: Enhanced src/windows-hardening/active-direc... 2025-07-12 08:24:17 +00:00
HackTricks News Bot
d0cc46ce8b Add content from: Research Update: Enhanced src/pentesting-web/http-request-sm... 2025-07-12 01:40:49 +00:00
HackTricks News Bot
fd1ef02762 Add content from: Dojo CTF Challenge #42: Hex Color Palette XXE File Disclosur... 2025-07-11 18:37:22 +00:00
HackTricks News Bot
f5fdc6ec50 Add content from: Pre-auth SQL Injection to RCE in Fortinet FortiWeb Fabric Co... 2025-07-11 18:33:07 +00:00
HackTricks News Bot
c65bce5f6d Add content from: Research Update: Enhanced src/pentesting-web/http-connection... 2025-07-11 16:25:39 +00:00
SirBroccoli
b5fa7686cd Merge pull request #1087 from HackTricks-wiki/research_update_src_pentesting-web_sql-injection_ms-access-sql-injection_20250710_082628
Add content: Research Update Enhanced src/pentesting-web/sql-injection/ms...
2025-07-11 12:01:48 +02:00
HackTricks News Bot
a53839b788 Add content from: Research Update: Enhanced src/pentesting-web/rate-limit-bypa... 2025-07-11 01:30:33 +00:00
HackTricks News Bot
6e4b16dfac Add content from: McHire Chatbot Platform: Default Credentials and IDOR Expose... 2025-07-10 12:00:47 +00:00
HackTricks News Bot
5695cc5633 Add content from: Research Update: Enhanced src/pentesting-web/sql-injection/m... 2025-07-10 08:30:55 +00:00
HackTricks News Bot
5666497a0a Add content from: NoSQL Error-Based Injection 2025-07-08 18:42:50 +02:00
HackTricks News Bot
cec6a1459d Add content from: CVE-2024-44236: Remote Code Execution in Apple macOS sips Ut... 2025-07-08 18:24:05 +02:00
carlospolop
0a5242b46a format fixes 2025-07-08 14:26:56 +02:00
carlospolop
827e6354da fix some titles 2025-07-08 13:28:53 +02:00
carlospolop
459e01abea update 2025-07-01 16:22:39 +02:00
carlospolop
992a4108bb f 2025-06-25 14:08:11 +02:00
carlospolop
42a3c3e626 add 2025-06-15 17:09:07 +02:00
carlospolop
8270fe8f97 a 2025-06-14 17:47:56 +02:00
carlospolop
aec90f181a AI update 2025-06-07 18:36:03 +02:00
HackCommander
b7eb9d9a7b Update hacking-with-cookies/README.md 2025-05-18 03:41:52 +02:00
Carlos Polop
0c9d9c4908 impr 2025-05-06 09:39:43 +02:00
Carlos Polop
3d1fab82bd sa 2025-05-04 21:44:08 +02:00
Carlos Polop
ec5829bd0a make search faster 2025-05-03 02:01:45 +02:00
Carlos Polop
c89949f37b a 2025-04-27 18:42:46 +02:00
Carlos Polop
ea237e8519 dapps 2025-04-24 18:53:31 +02:00
Carlos Polop
6498d18687 test 2025-04-20 16:54:44 +02:00
SirBroccoli
2fee22ae27 Merge pull request #1017 from m3n0sd0n4ld/m3n0sd0n4ld-rsql_injection
Create rsql-injection.md
2025-04-15 01:48:05 +02:00
Carlos Polop
d76fd453ac a 2025-04-13 17:51:52 +02:00
Carlos Polop
971de882d8 a 2025-04-13 17:29:15 +02:00
Carlos Polop
56f4b39fbc test actions 2025-04-13 17:13:00 +02:00
SirBroccoli
5cb7817293 Merge pull request #1020 from coderMohammed1/password_reset_by_rateLimit
Adding a new trick to password reset attacks!
2025-04-13 16:39:12 +02:00
Carlos Polop
93d3d0c000 impr 2025-04-13 16:18:25 +02:00
coder
89b45a098f Update reset-password.md
OTP session based rate-limit bypass
2025-04-12 18:28:37 +03:00
Carlos Polop
72f20a3fa2 impr 2025-04-07 02:44:44 +02:00
SirBroccoli
75efe20867 Merge pull request #1015 from progprnv/patch-1
Added Email verification bypass method - Update account-takeover.md
2025-04-03 15:33:15 +02:00
Carlos Polop
06da15b531 Merge branch 'master' of github.com:HackTricks-wiki/hacktricks 2025-03-29 23:54:02 +01:00
Carlos Polop
17890003e1 link 2025-03-29 19:14:14 +01:00
David Utón
a18b610add Create rsql-injection.md 2025-03-27 17:37:35 +01:00
Carlos Polop
88d3140f7e imprs 2025-03-24 12:26:48 +01:00
progprnv
815554112d Added Email verification bypass method - Update account-takeover.md
Added ### Bypass email verification for Account Takeover
2025-03-22 13:41:28 +05:30
SirBroccoli
e14bb1b55a Merge pull request #1013 from CyberzSentry/master
Using reflection mechanisms in SSTI
2025-03-21 10:24:46 +01:00
Carlos Polop
e7b26d3f54 a 2025-03-09 15:17:07 +01:00
Carlos Polop
9c89b182f3 impr 2025-03-09 15:16:11 +01:00
Carlos Polop
15eda77173 true sqli 2025-02-24 13:35:45 +01:00
cyberzs
92e5778089 Fix wrong placement of text 2025-02-22 11:33:40 +01:00
cyberzs
6e063f6cff SSTI .NET techniques
Added techniques for bypassing restrictions in .NET templates with use of reflection mechanisms.
2025-02-22 11:30:26 +01:00
Carlos Polop
b5b629f015 a 2025-02-12 18:22:09 +01:00
Carlos Polop
6e9c53b011 several additions 2025-02-05 01:08:00 +01:00