 |
API Payments 01 |
-- |
 |
1 |
 |
 |
CVE-2022-26xx9 |
< 1 Hr. |
 |
16 |
 |
 |
Python Snippet #07 |
< 1 Hr. |
 |
45 |
 |
 |
Python Snippet #08 |
< 1 Hr. |
 |
30 |
 |
 |
Python Snippet #09 |
< 1 Hr. |
 |
48 |
 |
 |
Mongo IDOR |
< 1 Hr. |
 |
66 |
 |
 |
CVE-2008-5x8x_ii |
< 1 Hr. |
 |
28 |
 |
 |
CVE-2005-2x8x |
< 1 Hr. |
 |
28 |
 |
 |
Python Snippet #06 |
< 1 Hr. |
 |
100 |
 |
 |
Golang Snippet #01 |
< 1 Hr. |
 |
63 |
 |
 |
Java Snippet #06 |
2-4 Hr. |
 |
36 |
 |
 |
CVE-2022-21449 |
< 1 Hr. |
 |
20 |
 |
 |
CVE-2021-33564 Argument Injection in Ruby Dragonfly |
< 1 Hr. |
 |
26 |
 |
 |
CVE-2021-45xx9 |
< 1 Hr. |
 |
40 |
 |
 |
PHP Snippet #07 |
< 1 Hr. |
 |
127 |
 |
 |
PHP Snippet #08 |
< 1 Hr. |
 |
99 |
 |
 |
PHP Snippet #09 |
< 1 Hr. |
 |
102 |
 |
 |
Python Snippet #03 |
< 1 Hr. |
 |
143 |
 |
 |
Python Snippet #04 |
< 1 Hr. |
 |
127 |
 |
 |
Python Snippet #05 |
< 1 Hr. |
 |
145 |
 |
 |
CVE-2021-39x3x |
< 1 Hr. |
 |
43 |
 |
 |
CVE-2022-21724: JDBC RCE PostgreSQL |
< 1 Hr. |
 |
35 |
 |
 |
Java Snippet #04 |
< 1 Hr. |
 |
137 |
 |
 |
Java Snippet #05 |
< 1 Hr. |
 |
123 |
 |
 |
Ox Remote Code Execution II |
> 4 Hr. |
 |
5 |
 |
 |
CVE-2009-3x8x |
< 1 Hr. |
 |
54 |
 |
 |
HTTP 41 |
< 1 Hr. |
 |
512 |
 |
 |
HTTP 42 |
< 1 Hr. |
 |
517 |
 |
 |
HTTP 43 |
< 1 Hr. |
 |
501 |
 |
 |
CVE-2021-381xx |
< 1 Hr. |
 |
61 |
 |
 |
H2 RCE |
< 1 Hr. |
 |
19 |
 |
 |
TypeScript Snippet #04 |
< 1 Hr. |
 |
86 |
 |
 |
TypeScript Snippet #05 |
< 1 Hr. |
 |
121 |
 |
 |
TypeScript Snippet #06 |
1-2 Hr. |
 |
68 |
 |
 |
TypeScript Snippet #07 |
< 1 Hr. |
 |
66 |
 |
 |
TypeScript Snippet #08 |
< 1 Hr. |
 |
80 |
 |
 |
TypeScript Snippet #09 |
< 1 Hr. |
 |
105 |
 |
 |
CVE-2008-4x9x |
< 1 Hr. |
 |
65 |
 |
 |
Log4j RCE II |
1-2 Hr. |
 |
61 |
 |
 |
Log4j RCE |
1-2 Hr. |
 |
173 |
 |
 |
CVE-2021-4379x |
< 1 Hr. |
 |
97 |
 |
 |
API 08 |
< 1 Hr. |
 |
267 |
 |
 |
JDBC RCE |
2-4 Hr. |
 |
13 |
 |
 |
CVE-2008-1x3x |
< 1 Hr. |
 |
91 |
 |
 |
Golang Snippet #12 |
< 1 Hr. |
 |
130 |
 |
 |
Python Snippet #02 |
< 1 Hr. |
 |
237 |
 |
 |
TypeScript Snippet #01 |
< 1 Hr. |
 |
187 |
 |
 |
TypeScript Snippet #02 |
< 1 Hr. |
 |
163 |
 |
 |
TypeScript Snippet #03 |
< 1 Hr. |
 |
167 |
 |
 |
API 07 |
< 1 Hr. |
 |
325 |
 |
 |
CVE-2021-40438 |
< 1 Hr. |
 |
118 |
 |
 |
CVE-2021-41773 |
< 1 Hr. |
 |
220 |
 |
 |
CVE-2021-41773 II |
2-4 Hr. |
 |
57 |
 |
 |
HTTP 36 |
< 1 Hr. |
 |
703 |
 |
 |
HTTP 37 |
< 1 Hr. |
 |
686 |
 |
 |
HTTP 38 |
< 1 Hr. |
 |
692 |
 |
 |
HTTP 39 |
< 1 Hr. |
 |
672 |
 |
 |
HTTP 40 |
< 1 Hr. |
 |
690 |
 |
 |
CVE-2006-4xxx |
< 1 Hr. |
 |
134 |
 |
 |
CVE-2006-4xxx_ii |
< 1 Hr. |
 |
93 |
 |
 |
PHP Snippet #04 |
< 1 Hr. |
 |
300 |
 |
 |
PHP Snippet #05 |
< 1 Hr. |
 |
258 |
 |
 |
PHP Snippet #06 |
< 1 Hr. |
 |
306 |
 |
 |
API 06 |
< 1 Hr. |
 |
369 |
 |
 |
CVE-2021-37xxx |
< 1 Hr. |
 |
85 |
 |
 |
PHP Snippet #01 |
< 1 Hr. |
 |
549 |
 |
 |
PHP Snippet #02 |
< 1 Hr. |
 |
439 |
 |
 |
PHP Snippet #03 |
< 1 Hr. |
 |
315 |
 |
 |
HTTP 31 |
< 1 Hr. |
 |
774 |
 |
 |
HTTP 32 |
< 1 Hr. |
 |
766 |
 |
 |
HTTP 35 |
< 1 Hr. |
 |
734 |
 |
 |
HTTP 34 |
< 1 Hr. |
 |
738 |
 |
 |
HTTP 33 |
< 1 Hr. |
 |
761 |
 |
 |
API 05 |
< 1 Hr. |
 |
468 |
 |
 |
API 04 |
< 1 Hr. |
 |
485 |
 |
 |
Golang Snippet #1 |
< 1 Hr. |
 |
265 |
 |
 |
Golang Snippet #02 |
< 1 Hr. |
 |
253 |
 |
 |
Golang Snippet #03 |
< 1 Hr. |
 |
192 |
 |
 |
Golang Snippet #04 |
< 1 Hr. |
 |
247 |
 |
 |
Golang Snippet #05 |
< 1 Hr. |
 |
214 |
 |
 |
Golang Snippet #06 |
< 1 Hr. |
 |
172 |
 |
 |
Golang Snippet #07 |
< 1 Hr. |
 |
190 |
 |
 |
Golang Snippet #08 |
< 1 Hr. |
 |
177 |
 |
 |
Golang Snippet #09 |
< 1 Hr. |
 |
169 |
 |
 |
Golang Snippet #10 |
< 1 Hr. |
 |
172 |
 |
 |
Golang Snippet #11 |
< 1 Hr. |
 |
165 |
 |
 |
Javascript Snippet #01 |
< 1 Hr. |
 |
385 |
 |
 |
Javascript Snippet #02 |
< 1 Hr. |
 |
329 |
 |
 |
Javascript Snippet #03 |
< 1 Hr. |
 |
331 |
 |
 |
Javascript Snippet #04 |
< 1 Hr. |
 |
292 |
 |
 |
Javascript Snippet #05 |
< 1 Hr. |
 |
306 |
 |
 |
Javascript Snippet #06 |
< 1 Hr. |
 |
261 |
 |
 |
Javascript Snippet #07 |
< 1 Hr. |
 |
286 |
 |
 |
Python Snippet #01 |
< 1 Hr. |
 |
389 |
 |
 |
Ruby Snippet #01 |
1-2 Hr. |
 |
95 |
 |
 |
Ruby Snippet #02 |
< 1 Hr. |
 |
121 |
 |
 |
Ruby Snippet #03 |
< 1 Hr. |
 |
139 |
 |
 |
Ruby Snippet #04 |
< 1 Hr. |
 |
124 |
 |
 |
Ruby Snippet #05 |
< 1 Hr. |
 |
127 |
 |
 |
Ruby Snippet #06 |
< 1 Hr. |
 |
116 |
 |
 |
Ruby Snippet #07 |
< 1 Hr. |
 |
101 |
 |
 |
Ruby Snippet #08 |
< 1 Hr. |
 |
116 |
 |
 |
Ruby Snippet #09 |
< 1 Hr. |
 |
109 |
 |
 |
HTTP 26 |
< 1 Hr. |
 |
871 |
 |
 |
HTTP 27 |
< 1 Hr. |
 |
859 |
 |
 |
HTTP 28 |
< 1 Hr. |
 |
839 |
 |
 |
HTTP 29 |
< 1 Hr. |
 |
810 |
 |
 |
HTTP 30 |
< 1 Hr. |
 |
784 |
 |
 |
CVE-2020-17xx7 |
< 1 Hr. |
 |
165 |
 |
 |
Ox Remote Code Execution |
2-4 Hr. |
 |
14 |
 |
 |
CVE-2020-9x9x |
< 1 Hr. |
 |
112 |
 |
 |
HTTP 21 |
< 1 Hr. |
 |
947 |
 |
 |
HTTP 22 |
< 1 Hr. |
 |
933 |
 |
 |
HTTP 23 |
< 1 Hr. |
 |
919 |
 |
 |
HTTP 24 |
< 1 Hr. |
 |
917 |
 |
 |
HTTP 25 |
< 1 Hr. |
 |
916 |
 |
 |
HTTP 16 |
< 1 Hr. |
 |
1013 |
 |
 |
HTTP 20 |
< 1 Hr. |
 |
962 |
 |
 |
HTTP 18 |
< 1 Hr. |
 |
996 |
 |
 |
HTTP 19 |
< 1 Hr. |
 |
973 |
 |
 |
HTTP 17 |
< 1 Hr. |
 |
1004 |
 |
 |
CVE-2020-17xx8 |
< 1 Hr. |
 |
119 |
 |
 |
CVE-2021-22204: Exiftool RCE |
1-2 Hr. |
 |
77 |
 |
 |
SSRF via FFMPEG II |
1-2 Hr. |
 |
62 |
 |
 |
API 03 |
< 1 Hr. |
 |
472 |
 |
 |
CVE-2020-11xxx |
< 1 Hr. |
 |
132 |
 |
 |
OAuth2: Authorization Server XSS II |
< 1 Hr. |
 |
120 |
 |
 |
HTTP 11 |
< 1 Hr. |
 |
1136 |
 |
 |
HTTP 15 |
< 1 Hr. |
 |
1082 |
 |
 |
HTTP 12 |
< 1 Hr. |
 |
1119 |
 |
 |
HTTP 13 |
< 1 Hr. |
 |
1097 |
 |
 |
HTTP 14 |
< 1 Hr. |
 |
1086 |
 |
 |
API 02 |
< 1 Hr. |
 |
818 |
 |
 |
Express Local File Read |
< 1 Hr. |
 |
140 |
 |
 |
OAuth2: Authorization Server XSS |
1-2 Hr. |
 |
157 |
 |
 |
HTTP 10 |
< 1 Hr. |
 |
1205 |
 |
 |
HTTP 09 |
< 1 Hr. |
 |
1229 |
 |
 |
HTTP 07 |
< 1 Hr. |
 |
1303 |
 |
 |
HTTP 06 |
< 1 Hr. |
 |
1313 |
 |
 |
HTTP 08 |
< 1 Hr. |
 |
1249 |
 |
 |
HTTP 03 |
< 1 Hr. |
 |
1486 |
 |
 |
HTTP 04 |
< 1 Hr. |
 |
1435 |
 |
 |
HTTP 05 |
< 1 Hr. |
 |
1408 |
 |
 |
HTTP 02 |
< 1 Hr. |
 |
1546 |
 |
 |
HTTP 01 |
< 1 Hr. |
 |
1654 |
 |
 |
API 01 |
< 1 Hr. |
 |
1089 |
 |
 |
JSON Web Token XIII |
< 1 Hr. |
 |
66 |
 |
 |
SAML: Comment Injection II |
< 1 Hr. |
 |
254 |
 |
 |
Recon 24 |
< 1 Hr. |
 |
1487 |
 |
 |
Recon 25 |
1-2 Hr. |
 |
956 |
 |
 |
Recon 26 |
< 1 Hr. |
 |
1513 |
 |
 |
SSRF via FFMPEG |
1-2 Hr. |
 |
129 |
 |
 |
SAML: Signature Wrapping II |
< 1 Hr. |
 |
187 |
 |
 |
RCE via argument injection |
2-4 Hr. |
 |
17 |
 |
 |
Code Review 16 |
< 1 Hr. |
 |
56 |
 |
 |
SAML: Signature Wrapping |
< 1 Hr. |
 |
243 |
 |
 |
Recon 20 |
< 1 Hr. |
 |
1681 |
 |
 |
Recon 21 |
< 1 Hr. |
 |
1663 |
 |
 |
Recon 22 |
< 1 Hr. |
 |
1556 |
 |
 |
Recon 23 |
< 1 Hr. |
 |
1571 |
 |
 |
SAML: SAMLResponse forwarding |
< 1 Hr. |
 |
221 |
 |
 |
CGI and Signature |
< 1 Hr. |
 |
90 |
 |
 |
Recon 17 |
< 1 Hr. |
 |
1823 |
 |
 |
Recon 18 |
< 1 Hr. |
 |
1721 |
 |
 |
Recon 19 |
< 1 Hr. |
 |
1576 |
 |
 |
Code Review 15 |
< 1 Hr. |
 |
56 |
 |
 |
Code Review 14 |
< 1 Hr. |
 |
62 |
 |
 |
CVE-2020-14343: PyYAML unsafe loader |
< 1 Hr. |
 |
152 |
 |
 |
OAuth2: State Fixation |
1-2 Hr. |
 |
201 |
 |
 |
Code Review 13 |
2-4 Hr. |
 |
46 |
 |
 |
CVE-2020-7115: Aruba Clearpass RCE |
1-2 Hr. |
 |
98 |
 |
 |
Code Review 12 |
< 1 Hr. |
 |
92 |
 |
 |
OAuth2: Predictable State II |
1-2 Hr. |
 |
136 |
 |
 |
Recon 13 |
< 1 Hr. |
 |
2251 |
 |
 |
Recon 14 |
< 1 Hr. |
 |
2046 |
 |
 |
Recon 15 |
< 1 Hr. |
 |
1709 |
 |
 |
Recon 16 |
< 1 Hr. |
 |
1886 |
 |
 |
EDDSA vulnerability in Monocypher |
1-2 Hr. |
 |
48 |
 |
 |
Code Review 11 |
2-4 Hr. |
 |
26 |
 |
 |
OAuth2: Predictable State |
2-4 Hr. |
 |
149 |
 |
 |
Code Review 10 |
< 1 Hr. |
 |
74 |
 |
 |
Recon 11 |
< 1 Hr. |
 |
1958 |
 |
 |
Recon 12 |
< 1 Hr. |
 |
2298 |
 |
 |
Unicode and NFKC |
< 1 Hr. |
 |
145 |
 |
 |
SAML: Trusted Embedded Key |
< 1 Hr. |
 |
220 |
 |
 |
Recon 06 |
< 1 Hr. |
 |
3827 |
 |
 |
Recon 07 |
< 1 Hr. |
 |
3360 |
 |
 |
Recon 08 |
< 1 Hr. |
 |
2996 |
 |
 |
CVE-2020-8163: Rails local name RCE |
2-4 Hr. |
 |
123 |
 |
 |
SAML: Known Key |
1-2 Hr. |
 |
207 |
 |
 |
Code Review 09 |
1-2 Hr. |
 |
63 |
 |
 |
Recon 04 |
< 1 Hr. |
 |
5010 |
 |
 |
Recon 05 |
< 1 Hr. |
 |
3794 |
 |
 |
Recon 01 |
< 1 Hr. |
 |
6508 |
 |
 |
OAuth2: Client Server XSS |
1-2 Hr. |
 |
197 |
 |
 |
Zip symlink |
< 1 Hr. |
 |
356 |
 |
 |
Code Review 08 |
1-2 Hr. |
 |
63 |
 |
 |
SAML: Comment Injection |
< 1 Hr. |
 |
973 |
 |
 |
Unicode and Downcase |
< 1 Hr. |
 |
374 |
 |
 |
Code Review 07 |
1-2 Hr. |
 |
84 |
 |
 |
Java Serialize 01 |
< 1 Hr. |
 |
212 |
 |
 |
Unicode and Uppercase |
< 1 Hr. |
 |
423 |
 |
 |
Code Review 06 |
2-4 Hr. |
 |
36 |
 |
 |
Cross-Site Leak |
2-4 Hr. |
 |
395 |
 |
 |
From SQL injection to Shell III: PostgreSQL Edition |
2-4 Hr. |
 |
102 |
 |
 |
OAuth2: Client CSRF II |
2-4 Hr. |
 |
306 |
 |
 |
XSS Include |
< 1 Hr. |
 |
907 |
 |
 |
OAuth2: Client CSRF |
< 1 Hr. |
 |
650 |
 |
 |
Code Review 05 |
2-4 Hr. |
 |
64 |
 |
 |
Code Review 04 |
1-2 Hr. |
 |
164 |
 |
 |
JS Prototype Pollution |
< 1 Hr. |
 |
559 |
 |
 |
OAuth2: Authorization Server CSRF |
1-2 Hr. |
 |
763 |
 |
 |
Code Review 03 |
2-4 Hr. |
 |
69 |
 |
 |
SSRF in PDF generation |
< 1 Hr. |
 |
579 |
 |
 |
OAuth2: Github HTTP HEAD |
1-2 Hr. |
 |
303 |
 |
 |
SVG XSS |
< 1 Hr. |
 |
1219 |
 |
 |
Apache Pluto RCE |
< 1 Hr. |
 |
346 |
 |
 |
JSON Cross-Site Request Forgery |
< 1 Hr. |
 |
1084 |
 |
 |
Cross-Site Request Forgery |
< 1 Hr. |
 |
1193 |
 |
 |
Code Review 02 |
1-2 Hr. |
 |
190 |
 |
 |
postMessage() IV |
< 1 Hr. |
 |
671 |
 |
 |
Spring Actuators |
1-2 Hr. |
 |
179 |
 |
 |
postMessage() III |
1-2 Hr. |
 |
691 |
 |
 |
postMessage() II |
< 1 Hr. |
 |
759 |
 |
 |
PHP phar:// |
< 1 Hr. |
 |
231 |
 |
 |
Signing Oracle |
< 1 Hr. |
 |
535 |
 |
 |
Length Extension Attack |
1-2 Hr. |
 |
475 |
 |
 |
JSON Web Encryption |
< 1 Hr. |
 |
342 |
 |
 |
postMessage() |
< 1 Hr. |
 |
859 |
 |
 |
CVE-2019-5418 |
1-2 Hr. |
 |
325 |
 |
 |
Cross-Site WebSocket Hijacking |
< 1 Hr. |
 |
800 |
 |
 |
JWT XII |
1-2 Hr. |
 |
434 |
 |
 |
Cross-Origin Resource Sharing II |
< 1 Hr. |
 |
745 |
 |
 |
JWT XI |
1-2 Hr. |
 |
428 |
 |
 |
cve-2019-5420 II |
1-2 Hr. |
 |
368 |
 |
 |
OAuth2: Client OpenRedirect |
< 1 Hr. |
 |
596 |
 |
 |
CVE-2019-5420 |
2-4 Hr. |
 |
585 |
 |
 |
JWT X |
< 1 Hr. |
 |
491 |
 |
 |
GraphQL: SQL Injection |
1-2 Hr. |
 |
875 |
 |
 |
OAuth2: Authorization Server OpenRedirect |
< 1 Hr. |
 |
683 |
 |
 |
JWT IX |
< 1 Hr. |
 |
572 |
 |
 |
Gogs RCE II |
< 1 Hr. |
 |
389 |
 |
 |
JWT VIII |
1-2 Hr. |
 |
618 |
 |
 |
SAML: Signature Stripping |
< 1 Hr. |
 |
1368 |
 |
 |
GraphQL Introspection |
< 1 Hr. |
 |
1570 |
 |
 |
Gogs RCE |
1-2 Hr. |
 |
443 |
 |
 |
Android 07 |
1-2 Hr. |
 |
959 |
 |
 |
Android 06 |
< 1 Hr. |
 |
1131 |
 |
 |
Android 05 |
1-2 Hr. |
 |
1346 |
 |
 |
Ruby 2.x Universal RCE Deserialization Gadget Chain |
< 1 Hr. |
 |
974 |
 |
 |
CVE-2018-10933: LibSSH auth bypass |
-- |
 |
0 |
 |
 |
Android 04 |
< 1 Hr. |
 |
1721 |
 |
 |
Android 03 |
< 1 Hr. |
 |
2319 |
 |
 |
From SQL injection to Shell III |
1-2 Hr. |
 |
742 |
 |
 |
Android 02 |
< 1 Hr. |
 |
2538 |
 |
 |
IDOR to Shell |
1-2 Hr. |
 |
709 |
 |
 |
Android 01 |
< 1 Hr. |
 |
2712 |
 |
 |
Introduction to CSP |
< 1 Hr. |
 |
1923 |
 |
 |
CVE-2018-11235: Git Submodule RCE |
2-4 Hr. |
 |
364 |
 |
 |
Git Information Leak II |
< 1 Hr. |
 |
1878 |
 |
 |
Git Information Leak |
< 1 Hr. |
 |
2479 |
 |
 |
JWT VII |
< 1 Hr. |
 |
2358 |
 |
 |
CVE-2016-5386: HTTPoxy/Golang HTTProxy namespace conflict |
< 1 Hr. |
 |
663 |
 |
 |
Unix 31 |
< 1 Hr. |
 |
10639 |
 |
 |
Unix 30 |
< 1 Hr. |
 |
10671 |
 |
 |
Unix 25 |
< 1 Hr. |
 |
11164 |
 |
 |
Unix 32 |
< 1 Hr. |
 |
10623 |
 |
 |
Unix 34 |
< 1 Hr. |
 |
10572 |
 |
 |
Unix 33 |
< 1 Hr. |
 |
10604 |
 |
 |
Unix 27 |
< 1 Hr. |
 |
11029 |
 |
 |
Unix 29 |
< 1 Hr. |
 |
10975 |
 |
 |
Unix 28 |
< 1 Hr. |
 |
10989 |
 |
 |
Unix 26 |
< 1 Hr. |
 |
11090 |
 |
 |
CBC-MAC II |
1-2 Hr. |
 |
1272 |
 |
 |
JWT VI |
< 1 Hr. |
 |
1832 |
 |
 |
CVE-2018-6574: go get RCE |
< 1 Hr. |
 |
651 |
 |
 |
Unix 11 |
< 1 Hr. |
 |
14685 |
 |
 |
Unix 12 |
< 1 Hr. |
 |
14299 |
 |
 |
Unix 13 |
< 1 Hr. |
 |
13716 |
 |
 |
Unix 14 |
< 1 Hr. |
 |
13412 |
 |
 |
Unix 15 |
< 1 Hr. |
 |
12307 |
 |
 |
Unix 16 |
< 1 Hr. |
 |
12059 |
 |
 |
Unix 17 |
< 1 Hr. |
 |
12250 |
 |
 |
Unix 18 |
< 1 Hr. |
 |
12194 |
 |
 |
Unix 19 |
< 1 Hr. |
 |
12119 |
 |
 |
Unix 20 |
< 1 Hr. |
 |
11377 |
 |
 |
Unix 21 |
< 1 Hr. |
 |
11511 |
 |
 |
Unix 22 |
< 1 Hr. |
 |
11400 |
 |
 |
Unix 23 |
< 1 Hr. |
 |
11222 |
 |
 |
Unix 24 |
< 1 Hr. |
 |
11166 |
 |
 |
JWT V |
< 1 Hr. |
 |
2185 |
 |
 |
CVE-2018-0114 |
2-4 Hr. |
 |
1336 |
 |
 |
JWT IV |
< 1 Hr. |
 |
1937 |
 |
 |
CBC-MAC |
1-2 Hr. |
 |
1234 |
 |
 |
JWT III |
1-2 Hr. |
 |
2077 |
 |
 |
Code Execution 09 |
< 1 Hr. |
 |
8130 |
 |
 |
Server Side Template Injection 02 |
< 1 Hr. |
 |
6375 |
 |
 |
MongoDB Injection 02 |
1-2 Hr. |
 |
6432 |
 |
 |
Authorization 06 |
< 1 Hr. |
 |
10948 |
 |
 |
Code Execution 08 |
< 1 Hr. |
 |
8246 |
 |
 |
Authorization 04 |
< 1 Hr. |
 |
11823 |
 |
 |
Authorization 05 |
< 1 Hr. |
 |
11395 |
 |
 |
Command Execution 03 |
< 1 Hr. |
 |
8470 |
 |
 |
Server Side Template Injection 01 |
< 1 Hr. |
 |
6378 |
 |
 |
Code Execution 05 |
< 1 Hr. |
 |
9389 |
 |
 |
Code Execution 06 |
< 1 Hr. |
 |
9201 |
 |
 |
Code Execution 07 |
< 1 Hr. |
 |
8999 |
 |
 |
Introduction to code review |
-- |
 |
0 |
 |
 |
S2-052 |
< 1 Hr. |
 |
1909 |
 |
 |
SQL Injection 06 |
< 1 Hr. |
 |
6916 |
 |
 |
XML Attacks 01 |
< 1 Hr. |
 |
6717 |
 |
 |
XML Attacks 02 |
< 1 Hr. |
 |
6404 |
 |
 |
SQL Injection 04 |
< 1 Hr. |
 |
7306 |
 |
 |
SQL Injection 05 |
< 1 Hr. |
 |
7250 |
 |
 |
SQL Injection 01 |
< 1 Hr. |
 |
8060 |
 |
 |
SQL Injection 02 |
< 1 Hr. |
 |
7819 |
 |
 |
SQL Injection 03 |
< 1 Hr. |
 |
7639 |
 |
 |
Code Execution 02 |
< 1 Hr. |
 |
10384 |
 |
 |
Authorization 03 |
< 1 Hr. |
 |
12605 |
 |
 |
Command Execution 01 |
< 1 Hr. |
 |
8811 |
 |
 |
Command Execution 02 |
< 1 Hr. |
 |
8569 |
 |
 |
Server Side Request Forgery 04 |
< 1 Hr. |
 |
7236 |
 |
 |
Open Redirect 01 |
< 1 Hr. |
 |
7428 |
 |
 |
Open Redirect 02 |
< 1 Hr. |
 |
7201 |
 |
 |
MongoDB Injection 01 |
< 1 Hr. |
 |
7589 |
 |
 |
SAML: Introduction |
< 1 Hr. |
 |
1868 |
 |
 |
Server Side Request Forgery 02 |
< 1 Hr. |
 |
7509 |
 |
 |
Server Side Request Forgery 03 |
< 1 Hr. |
 |
7485 |
 |
 |
Server Side Request Forgery 01 |
< 1 Hr. |
 |
7637 |
 |
 |
XSS 09 |
< 1 Hr. |
 |
6759 |
 |
 |
XSS 10 |
< 1 Hr. |
 |
6284 |
 |
 |
Directory Traversal 01 |
< 1 Hr. |
 |
8896 |
 |
 |
Directory Traversal 02 |
< 1 Hr. |
 |
8770 |
 |
 |
Directory Traversal 03 |
< 1 Hr. |
 |
8686 |
 |
 |
XSS 02 |
< 1 Hr. |
 |
7943 |
 |
 |
XSS 03 |
< 1 Hr. |
 |
7679 |
 |
 |
XSS 04 |
< 1 Hr. |
 |
7296 |
 |
 |
XSS 05 |
< 1 Hr. |
 |
7099 |
 |
 |
XSS 06 |
< 1 Hr. |
 |
7081 |
 |
 |
XSS 07 |
< 1 Hr. |
 |
6963 |
 |
 |
XSS 08 |
< 1 Hr. |
 |
6849 |
 |
 |
File Upload 01 |
< 1 Hr. |
 |
6942 |
 |
 |
File Upload 02 |
< 1 Hr. |
 |
6864 |
 |
 |
XSS 01 |
< 1 Hr. |
 |
8220 |
 |
 |
Authentication 05 |
< 1 Hr. |
 |
12875 |
 |
 |
Code Execution 03 |
< 1 Hr. |
 |
9908 |
 |
 |
Code Execution 04 |
< 1 Hr. |
 |
9732 |
 |
 |
File Include 01 |
< 1 Hr. |
 |
8308 |
 |
 |
File Include 02 |
< 1 Hr. |
 |
8132 |
 |
 |
LDAP 01 |
< 1 Hr. |
 |
8062 |
 |
 |
LDAP 02 |
< 1 Hr. |
 |
7738 |
 |
 |
Authentication 04 |
< 1 Hr. |
 |
13501 |
 |
 |
Authentication 01 |
< 1 Hr. |
 |
14630 |
 |
 |
Authentication 02 |
< 1 Hr. |
 |
14137 |
 |
 |
Authentication 03 |
< 1 Hr. |
 |
13738 |
 |
 |
Authorization 01 |
< 1 Hr. |
 |
13041 |
 |
 |
Authorization 02 |
< 1 Hr. |
 |
12797 |
 |
 |
Code Execution 01 |
< 1 Hr. |
 |
10982 |
 |
 |
CVE-2016-10033: PHPMailer RCE |
< 1 Hr. |
 |
2906 |
 |
 |
Cipher block chaining |
1-2 Hr. |
 |
2209 |
 |
 |
Struts s2-045 |
< 1 Hr. |
 |
2150 |
 |
 |
CVE-2016-2098 |
< 1 Hr. |
 |
2787 |
 |
 |
CVE-2014-4511: Gitlist RCE |
-- |
 |
0 |
 |
 |
ECDSA |
2-4 Hr. |
 |
297 |
 |
 |
Werkzeug DEBUG |
< 1 Hr. |
 |
1285 |
 |
 |
Padding Oracle |
1-2 Hr. |
 |
716 |
 |
 |
Unickle |
1-2 Hr. |
 |
575 |
 |
 |
CVE-2015-3224 |
< 1 Hr. |
 |
1289 |
 |
 |
Luhn |
2-4 Hr. |
 |
519 |
 |
 |
CVE-2013-0156: Rails Object Injection |
< 1 Hr. |
 |
3216 |
 |
 |
JSON Web Token II |
1-2 Hr. |
 |
2767 |
 |
 |
CVE-2016-0792 |
< 1 Hr. |
 |
3779 |
 |
 |
ObjectInputStream |
< 1 Hr. |
 |
3461 |
 |
 |
XMLDecoder |
< 1 Hr. |
 |
4220 |
 |
 |
CVE-2014-1266 |
1-2 Hr. |
 |
990 |
 |
 |
CVE-2011-0228 |
1-2 Hr. |
 |
1144 |
 |
 |
Intercept 03 |
< 1 Hr. |
 |
1397 |
 |
 |
Intercept 02 |
< 1 Hr. |
 |
1526 |
 |
 |
Intercept 01 |
1-2 Hr. |
 |
1672 |
 |
 |
Struts devMode |
-- |
 |
0 |
 |
 |
JSON Web Token |
< 1 Hr. |
 |
7863 |
 |
 |
Cross-Origin Resource Sharing |
-- |
 |
0 |
 |
 |
API to Shell |
2-4 Hr. |
 |
2752 |
 |
 |
Pickle Code Execution |
< 1 Hr. |
 |
5144 |
 |
 |
Play XML Entities |
1-2 Hr. |
 |
1744 |
 |
 |
CVE-2014-6271/Shellshock |
< 1 Hr. |
 |
7166 |
 |
 |
Play Session Injection |
< 1 Hr. |
 |
2194 |
 |
 |
CVE-2007-1860: mod_jk double-decoding |
1-2 Hr. |
 |
4950 |
 |
 |
XSS and MySQL FILE |
-- |
 |
0 |
 |
 |
Electronic Code Book |
1-2 Hr. |
 |
4715 |
 |
 |
Web for Pentester II |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell II |
-- |
 |
0 |
 |
 |
CVE-2012-6081: MoinMoin code execution |
-- |
 |
0 |
 |
 |
Web for Pentester |
-- |
 |
0 |
 |
 |
Axis2 Web service and Tomcat Manager |
-- |
 |
0 |
 |
 |
CVE-2008-1930: Wordpress 2.5 Cookie Integrity Protection Vulnerability |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell: PostgreSQL edition |
-- |
 |
0 |
 |
 |
Rack Cookies and Commands injection |
-- |
 |
0 |
 |
 |
Linux Host Review |
-- |
 |
0 |
 |
 |
CVE-2012-2661: ActiveRecord SQL injection |
-- |
 |
0 |
 |
 |
CVE-2012-1823: PHP CGI |
-- |
 |
0 |
 |
 |
PHP Include And Post Exploitation |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell |
< 1 Hr. |
 |
6555 |
 |
 |
Code Review 01 |
1-2 Hr. |
 |
306 |
 |
 |
Introduction 01 |
< 1 Hr. |
 |
21469 |
 |
 |
Recon 00 |
< 1 Hr. |
 |
6501 |
 |
 |
Introduction 02 |
< 1 Hr. |
 |
21221 |
 |
 |
Recon 02 |
< 1 Hr. |
 |
5415 |
 |
 |
Introduction 03 |
< 1 Hr. |
 |
20794 |
 |
 |
Recon 03 |
< 1 Hr. |
 |
4834 |
 |
 |
Introduction 00 |
< 1 Hr. |
 |
22144 |
 |
 |
Recon 10 |
< 1 Hr. |
 |
2128 |
 |
 |
Recon 09 |
< 1 Hr. |
 |
3397 |
 |
 |
Code Review 17 |
1-2 Hr. |
 |
24 |
 |
 |
Unix 00 |
< 1 Hr. |
 |
18795 |
 |
 |
Unix 01 |
< 1 Hr. |
 |
18370 |
 |
 |
Unix 02 |
< 1 Hr. |
 |
18213 |
 |
 |
Unix 03 |
< 1 Hr. |
 |
17995 |
 |
 |
Unix 04 |
< 1 Hr. |
 |
17767 |
 |
 |
Unix 05 |
< 1 Hr. |
 |
16935 |
 |
 |
Unix 06 |
< 1 Hr. |
 |
16270 |
 |
 |
Unix 07 |
< 1 Hr. |
 |
16026 |
 |
 |
Unix 08 |
< 1 Hr. |
 |
15787 |
 |
 |
Unix 09 |
< 1 Hr. |
 |
15319 |
 |
 |
Unix 10 |
< 1 Hr. |
 |
14937 |
 |
 |
PCAP 01 |
< 1 Hr. |
 |
5771 |
 |
 |
PCAP 02 |
< 1 Hr. |
 |
5641 |
 |
 |
PCAP 03 |
< 1 Hr. |
 |
5563 |
 |
 |
PCAP 04 |
< 1 Hr. |
 |
5344 |
 |
 |
PCAP 05 |
< 1 Hr. |
 |
5254 |
 |
 |
PCAP 06 |
< 1 Hr. |
 |
5172 |
 |
 |
PCAP 07 |
< 1 Hr. |
 |
5122 |
 |
 |
PCAP 08 |
< 1 Hr. |
 |
5084 |
 |
 |
PCAP 09 |
< 1 Hr. |
 |
5061 |
 |
 |
PCAP 10 |
< 1 Hr. |
 |
4786 |
 |
 |
PCAP 11 |
< 1 Hr. |
 |
4771 |
 |
 |
PCAP 12 |
< 1 Hr. |
 |
4758 |
 |
 |
PCAP 13 |
< 1 Hr. |
 |
4810 |
 |
 |
Java Snippet #01 |
< 1 Hr. |
 |
274 |
 |
 |
PCAP 14 |
< 1 Hr. |
 |
4797 |
 |
 |
Java Snippet #02 |
< 1 Hr. |
 |
247 |
 |
 |
PCAP 15 |
< 1 Hr. |
 |
4785 |
 |
 |
Java Snippet #03 |
< 1 Hr. |
 |
224 |
 |
 |
PCAP 16 |
< 1 Hr. |
 |
4762 |
 |
 |
PCAP 17 |
< 1 Hr. |
 |
4710 |
 |
 |
PCAP 18 |
< 1 Hr. |
 |
4704 |
 |
 |
PCAP 19 |
< 1 Hr. |
 |
4683 |
 |
 |
PCAP 20 |
< 1 Hr. |
 |
4599 |
 |
 |
PCAP 21 |
< 1 Hr. |
 |
4554 |
 |
 |
PCAP 22 |
< 1 Hr. |
 |
4535 |
 |
 |
PCAP 23 |
< 1 Hr. |
 |
4529 |
 |
 |
PCAP 24 |
< 1 Hr. |
 |
4518 |
 |
 |
PCAP 25 |
< 1 Hr. |
 |
4521 |
 |
 |
PCAP 26 |
< 1 Hr. |
 |
4519 |
 |
 |
PCAP 27 |
< 1 Hr. |
 |
4469 |
 |
 |
PCAP 28 |
< 1 Hr. |
 |
4454 |
 |
 |
PCAP 29 |
< 1 Hr. |
 |
4445 |
 |
 |
PCAP 30 |
< 1 Hr. |
 |
4421 |
 |
 |
PCAP 31 |
< 1 Hr. |
 |
4408 |
 |
 |
PCAP 32 |
< 1 Hr. |
 |
4349 |
 |
 |
CVE-2021-4xx50 |
< 1 Hr. |
 |
167 |
 |
 |
PCAP 33 |
< 1 Hr. |
 |
4277 |
 |
 |
PCAP 34 |
< 1 Hr. |
 |
4323 |
 |
 |
PCAP 35 |
< 1 Hr. |
 |
4382 |
 |
 |
Android 08 |
1-2 Hr. |
 |
908 |
 |
No search results found... |