 |
DOMPDF RCE IV |
-- |
 |
1 |
 |
 |
SAML: Signature Wrapping III |
> 4 Hr. |
 |
2 |
 |
 |
XSL Java |
< 1 Hr. |
 |
17 |
 |
 |
DOMPDF RCE III |
2-4 Hr. |
 |
4 |
 |
 |
XSL PHP V |
1-2 Hr. |
 |
19 |
 |
 |
API Payments 07 |
< 1 Hr. |
 |
112 |
 |
 |
CVE-2021-22204: Exiftool RCE II |
< 1 Hr. |
 |
13 |
 |
 |
XSL PHP IV |
2-4 Hr. |
 |
22 |
 |
 |
API Payments 06 |
< 1 Hr. |
 |
139 |
 |
 |
CVE-2022-39224 |
2-4 Hr. |
 |
9 |
 |
 |
XSL PHP III |
< 1 Hr. |
 |
41 |
 |
 |
DOMPDF RCE II |
2-4 Hr. |
 |
6 |
 |
 |
DOMPDF RCE |
< 1 Hr. |
 |
35 |
 |
 |
API Payments 05 |
< 1 Hr. |
 |
192 |
 |
 |
XSL PHP II |
< 1 Hr. |
 |
75 |
 |
 |
API Payments 04 |
< 1 Hr. |
 |
287 |
 |
 |
XSL PHP |
< 1 Hr. |
 |
93 |
 |
 |
API Payments 03 |
< 1 Hr. |
 |
381 |
 |
 |
Code Review 18 |
1-2 Hr. |
 |
34 |
 |
 |
CVE-2020-13xxx |
< 1 Hr. |
 |
124 |
 |
 |
CVE-2022-3x7x1 |
< 1 Hr. |
 |
183 |
 |
 |
CVE-2008-5x8x |
< 1 Hr. |
 |
149 |
 |
 |
Python Snippet #02 |
< 1 Hr. |
 |
594 |
 |
 |
Java Snippet #10 |
< 1 Hr. |
 |
341 |
 |
 |
Java Snippet #11 |
< 1 Hr. |
 |
333 |
 |
 |
Java Snippet #12 |
< 1 Hr. |
 |
312 |
 |
 |
API Payments 02 |
< 1 Hr. |
 |
475 |
 |
 |
GCM Nonce Reuse |
< 1 Hr. |
 |
49 |
 |
 |
CVE-2019-5x2x |
< 1 Hr. |
 |
118 |
 |
 |
Java Snippet #07 |
< 1 Hr. |
 |
523 |
 |
 |
Java Snippet #08 |
< 1 Hr. |
 |
446 |
 |
 |
Java Snippet #09 |
< 1 Hr. |
 |
344 |
 |
 |
API Payments 01 |
< 1 Hr. |
 |
596 |
 |
 |
CVE-2022-26xx9 |
< 1 Hr. |
 |
119 |
 |
 |
Python Snippet #07 |
< 1 Hr. |
 |
449 |
 |
 |
Python Snippet #08 |
< 1 Hr. |
 |
386 |
 |
 |
Python Snippet #09 |
< 1 Hr. |
 |
435 |
 |
 |
Mongo IDOR |
< 1 Hr. |
 |
380 |
 |
 |
CVE-2008-5x8x_ii |
< 1 Hr. |
 |
127 |
 |
 |
CVE-2005-2x8x |
< 1 Hr. |
 |
135 |
 |
 |
Python Snippet #06 |
< 1 Hr. |
 |
525 |
 |
 |
Golang Snippet #01 |
< 1 Hr. |
 |
471 |
 |
 |
Java Snippet #06 |
< 1 Hr. |
 |
329 |
 |
 |
CVE-2022-21449 |
1-2 Hr. |
 |
42 |
 |
 |
CVE-2021-33564 Argument Injection in Ruby Dragonfly |
< 1 Hr. |
 |
64 |
 |
 |
CVE-2021-45xx9 |
< 1 Hr. |
 |
200 |
 |
 |
PHP Snippet #07 |
< 1 Hr. |
 |
494 |
 |
 |
PHP Snippet #08 |
< 1 Hr. |
 |
422 |
 |
 |
PHP Snippet #09 |
< 1 Hr. |
 |
423 |
 |
 |
Python Snippet #03 |
< 1 Hr. |
 |
504 |
 |
 |
Python Snippet #04 |
< 1 Hr. |
 |
455 |
 |
 |
Python Snippet #05 |
< 1 Hr. |
 |
487 |
 |
 |
CVE-2021-39x3x |
< 1 Hr. |
 |
121 |
 |
 |
CVE-2022-21724: JDBC RCE PostgreSQL |
< 1 Hr. |
 |
77 |
 |
 |
Java Snippet #04 |
< 1 Hr. |
 |
432 |
 |
 |
Java Snippet #05 |
< 1 Hr. |
 |
398 |
 |
 |
Ox Remote Code Execution II |
2-4 Hr. |
 |
12 |
 |
 |
CVE-2009-3x8x |
< 1 Hr. |
 |
166 |
 |
 |
HTTP 41 |
< 1 Hr. |
 |
1232 |
 |
 |
HTTP 42 |
< 1 Hr. |
 |
1247 |
 |
 |
HTTP 43 |
< 1 Hr. |
 |
1197 |
 |
 |
CVE-2021-381xx |
< 1 Hr. |
 |
159 |
 |
 |
H2 RCE |
< 1 Hr. |
 |
43 |
 |
 |
TypeScript Snippet #04 |
< 1 Hr. |
 |
291 |
 |
 |
TypeScript Snippet #05 |
< 1 Hr. |
 |
321 |
 |
 |
TypeScript Snippet #06 |
< 1 Hr. |
 |
262 |
 |
 |
TypeScript Snippet #07 |
< 1 Hr. |
 |
235 |
 |
 |
TypeScript Snippet #08 |
< 1 Hr. |
 |
266 |
 |
 |
TypeScript Snippet #09 |
< 1 Hr. |
 |
286 |
 |
 |
CVE-2008-4x9x |
< 1 Hr. |
 |
152 |
 |
 |
Log4j RCE II |
1-2 Hr. |
 |
91 |
 |
 |
Log4j RCE |
1-2 Hr. |
 |
219 |
 |
 |
CVE-2021-4379x |
< 1 Hr. |
 |
239 |
 |
 |
API 08 |
< 1 Hr. |
 |
635 |
 |
 |
JDBC RCE |
2-4 Hr. |
 |
34 |
 |
 |
CVE-2008-1x3x |
< 1 Hr. |
 |
227 |
 |
 |
Golang Snippet #12 |
< 1 Hr. |
 |
296 |
 |
 |
TypeScript Snippet #01 |
< 1 Hr. |
 |
421 |
 |
 |
TypeScript Snippet #02 |
< 1 Hr. |
 |
382 |
 |
 |
TypeScript Snippet #03 |
< 1 Hr. |
 |
371 |
 |
 |
API 07 |
< 1 Hr. |
 |
693 |
 |
 |
CVE-2021-40438 |
< 1 Hr. |
 |
181 |
 |
 |
CVE-2021-41773 |
< 1 Hr. |
 |
316 |
 |
 |
CVE-2021-41773 II |
1-2 Hr. |
 |
93 |
 |
 |
HTTP 36 |
< 1 Hr. |
 |
1417 |
 |
 |
HTTP 37 |
< 1 Hr. |
 |
1400 |
 |
 |
HTTP 38 |
< 1 Hr. |
 |
1405 |
 |
 |
HTTP 39 |
< 1 Hr. |
 |
1387 |
 |
 |
HTTP 40 |
< 1 Hr. |
 |
1403 |
 |
 |
CVE-2006-4xxx |
< 1 Hr. |
 |
232 |
 |
 |
CVE-2006-4xxx_ii |
< 1 Hr. |
 |
166 |
 |
 |
PHP Snippet #04 |
< 1 Hr. |
 |
628 |
 |
 |
PHP Snippet #05 |
< 1 Hr. |
 |
577 |
 |
 |
PHP Snippet #06 |
< 1 Hr. |
 |
628 |
 |
 |
API 06 |
< 1 Hr. |
 |
784 |
 |
 |
CVE-2021-37xxx |
< 1 Hr. |
 |
176 |
 |
 |
PHP Snippet #01 |
< 1 Hr. |
 |
983 |
 |
 |
PHP Snippet #02 |
< 1 Hr. |
 |
817 |
 |
 |
PHP Snippet #03 |
< 1 Hr. |
 |
652 |
 |
 |
HTTP 31 |
< 1 Hr. |
 |
1504 |
 |
 |
HTTP 32 |
< 1 Hr. |
 |
1489 |
 |
 |
HTTP 35 |
< 1 Hr. |
 |
1454 |
 |
 |
HTTP 34 |
< 1 Hr. |
 |
1460 |
 |
 |
HTTP 33 |
< 1 Hr. |
 |
1479 |
 |
 |
API 05 |
< 1 Hr. |
 |
967 |
 |
 |
API 04 |
< 1 Hr. |
 |
1018 |
 |
 |
Golang Snippet #02 |
< 1 Hr. |
 |
472 |
 |
 |
Golang Snippet #03 |
< 1 Hr. |
 |
376 |
 |
 |
Golang Snippet #04 |
< 1 Hr. |
 |
442 |
 |
 |
Golang Snippet #05 |
< 1 Hr. |
 |
401 |
 |
 |
Golang Snippet #06 |
< 1 Hr. |
 |
336 |
 |
 |
Golang Snippet #07 |
< 1 Hr. |
 |
362 |
 |
 |
Golang Snippet #08 |
< 1 Hr. |
 |
337 |
 |
 |
Golang Snippet #09 |
< 1 Hr. |
 |
324 |
 |
 |
Golang Snippet #10 |
< 1 Hr. |
 |
340 |
 |
 |
Golang Snippet #11 |
< 1 Hr. |
 |
334 |
 |
 |
Javascript Snippet #01 |
< 1 Hr. |
 |
800 |
 |
 |
Javascript Snippet #02 |
< 1 Hr. |
 |
627 |
 |
 |
Javascript Snippet #03 |
< 1 Hr. |
 |
637 |
 |
 |
Javascript Snippet #04 |
< 1 Hr. |
 |
582 |
 |
 |
Javascript Snippet #05 |
< 1 Hr. |
 |
596 |
 |
 |
Javascript Snippet #06 |
< 1 Hr. |
 |
540 |
 |
 |
Javascript Snippet #07 |
< 1 Hr. |
 |
552 |
 |
 |
Python Snippet #01 |
< 1 Hr. |
 |
782 |
 |
 |
Ruby Snippet #01 |
1-2 Hr. |
 |
242 |
 |
 |
Ruby Snippet #02 |
< 1 Hr. |
 |
266 |
 |
 |
Ruby Snippet #03 |
< 1 Hr. |
 |
287 |
 |
 |
Ruby Snippet #04 |
< 1 Hr. |
 |
258 |
 |
 |
Ruby Snippet #05 |
< 1 Hr. |
 |
277 |
 |
 |
Ruby Snippet #06 |
< 1 Hr. |
 |
263 |
 |
 |
Ruby Snippet #07 |
< 1 Hr. |
 |
221 |
 |
 |
Ruby Snippet #08 |
< 1 Hr. |
 |
241 |
 |
 |
Ruby Snippet #09 |
< 1 Hr. |
 |
225 |
 |
 |
HTTP 26 |
< 1 Hr. |
 |
1647 |
 |
 |
HTTP 27 |
< 1 Hr. |
 |
1620 |
 |
 |
HTTP 28 |
< 1 Hr. |
 |
1591 |
 |
 |
HTTP 29 |
< 1 Hr. |
 |
1552 |
 |
 |
HTTP 30 |
< 1 Hr. |
 |
1518 |
 |
 |
CVE-2020-17xx7 |
< 1 Hr. |
 |
294 |
 |
 |
Ox Remote Code Execution |
2-4 Hr. |
 |
20 |
 |
 |
CVE-2020-9x9x |
< 1 Hr. |
 |
227 |
 |
 |
HTTP 21 |
< 1 Hr. |
 |
1750 |
 |
 |
HTTP 22 |
< 1 Hr. |
 |
1722 |
 |
 |
HTTP 23 |
< 1 Hr. |
 |
1696 |
 |
 |
HTTP 24 |
< 1 Hr. |
 |
1693 |
 |
 |
HTTP 25 |
< 1 Hr. |
 |
1690 |
 |
 |
HTTP 16 |
< 1 Hr. |
 |
1836 |
 |
 |
HTTP 20 |
< 1 Hr. |
 |
1759 |
 |
 |
HTTP 18 |
< 1 Hr. |
 |
1813 |
 |
 |
HTTP 19 |
< 1 Hr. |
 |
1782 |
 |
 |
HTTP 17 |
< 1 Hr. |
 |
1824 |
 |
 |
CVE-2020-17xx8 |
< 1 Hr. |
 |
204 |
 |
 |
CVE-2021-22204: Exiftool RCE |
1-2 Hr. |
 |
106 |
 |
 |
SSRF via FFMPEG II |
< 1 Hr. |
 |
84 |
 |
 |
API 03 |
< 1 Hr. |
 |
1021 |
 |
 |
CVE-2020-11xxx |
< 1 Hr. |
 |
222 |
 |
 |
OAuth2: Authorization Server XSS II |
< 1 Hr. |
 |
173 |
 |
 |
HTTP 11 |
< 1 Hr. |
 |
1980 |
 |
 |
HTTP 15 |
< 1 Hr. |
 |
1909 |
 |
 |
HTTP 12 |
< 1 Hr. |
 |
1963 |
 |
 |
HTTP 13 |
< 1 Hr. |
 |
1932 |
 |
 |
HTTP 14 |
< 1 Hr. |
 |
1914 |
 |
 |
API 02 |
< 1 Hr. |
 |
1475 |
 |
 |
Express Local File Read |
< 1 Hr. |
 |
215 |
 |
 |
OAuth2: Authorization Server XSS |
< 1 Hr. |
 |
222 |
 |
 |
HTTP 10 |
< 1 Hr. |
 |
2071 |
 |
 |
HTTP 09 |
< 1 Hr. |
 |
2106 |
 |
 |
HTTP 07 |
< 1 Hr. |
 |
2200 |
 |
 |
HTTP 06 |
< 1 Hr. |
 |
2220 |
 |
 |
HTTP 08 |
< 1 Hr. |
 |
2132 |
 |
 |
HTTP 03 |
< 1 Hr. |
 |
2438 |
 |
 |
HTTP 04 |
< 1 Hr. |
 |
2367 |
 |
 |
HTTP 05 |
< 1 Hr. |
 |
2322 |
 |
 |
HTTP 02 |
< 1 Hr. |
 |
2537 |
 |
 |
HTTP 01 |
< 1 Hr. |
 |
2699 |
 |
 |
API 01 |
< 1 Hr. |
 |
1829 |
 |
 |
JSON Web Token XIII |
< 1 Hr. |
 |
84 |
 |
 |
SAML: Comment Injection II |
< 1 Hr. |
 |
343 |
 |
 |
Recon 24 |
< 1 Hr. |
 |
2218 |
 |
 |
Recon 25 |
1-2 Hr. |
 |
1381 |
 |
 |
Recon 26 |
< 1 Hr. |
 |
2207 |
 |
 |
SSRF via FFMPEG |
1-2 Hr. |
 |
173 |
 |
 |
SAML: Signature Wrapping II |
< 1 Hr. |
 |
252 |
 |
 |
RCE via argument injection |
2-4 Hr. |
 |
24 |
 |
 |
Code Review 16 |
< 1 Hr. |
 |
107 |
 |
 |
SAML: Signature Wrapping |
< 1 Hr. |
 |
334 |
 |
 |
Recon 20 |
< 1 Hr. |
 |
2399 |
 |
 |
Recon 21 |
< 1 Hr. |
 |
2361 |
 |
 |
Recon 22 |
< 1 Hr. |
 |
2224 |
 |
 |
Recon 23 |
< 1 Hr. |
 |
2242 |
 |
 |
SAML: SAMLResponse forwarding |
< 1 Hr. |
 |
291 |
 |
 |
CGI and Signature |
< 1 Hr. |
 |
123 |
 |
 |
Recon 17 |
< 1 Hr. |
 |
2566 |
 |
 |
Recon 18 |
< 1 Hr. |
 |
2429 |
 |
 |
Recon 19 |
< 1 Hr. |
 |
2251 |
 |
 |
Code Review 15 |
< 1 Hr. |
 |
108 |
 |
 |
Code Review 14 |
< 1 Hr. |
 |
115 |
 |
 |
CVE-2020-14343: PyYAML unsafe loader |
< 1 Hr. |
 |
190 |
 |
 |
OAuth2: State Fixation |
1-2 Hr. |
 |
262 |
 |
 |
Code Review 13 |
2-4 Hr. |
 |
72 |
 |
 |
CVE-2020-7115: Aruba Clearpass RCE |
1-2 Hr. |
 |
128 |
 |
 |
Code Review 12 |
< 1 Hr. |
 |
153 |
 |
 |
OAuth2: Predictable State II |
1-2 Hr. |
 |
182 |
 |
 |
Recon 13 |
< 1 Hr. |
 |
3088 |
 |
 |
Recon 14 |
< 1 Hr. |
 |
2808 |
 |
 |
Recon 15 |
< 1 Hr. |
 |
2395 |
 |
 |
Recon 16 |
< 1 Hr. |
 |
2604 |
 |
 |
EDDSA vulnerability in Monocypher |
1-2 Hr. |
 |
83 |
 |
 |
Code Review 11 |
2-4 Hr. |
 |
45 |
 |
 |
OAuth2: Predictable State |
2-4 Hr. |
 |
198 |
 |
 |
Code Review 10 |
< 1 Hr. |
 |
114 |
 |
 |
Recon 11 |
< 1 Hr. |
 |
2707 |
 |
 |
Recon 12 |
< 1 Hr. |
 |
3097 |
 |
 |
Unicode and NFKC |
< 1 Hr. |
 |
188 |
 |
 |
SAML: Trusted Embedded Key |
< 1 Hr. |
 |
313 |
 |
 |
Recon 06 |
< 1 Hr. |
 |
5373 |
 |
 |
Recon 07 |
< 1 Hr. |
 |
4762 |
 |
 |
Recon 08 |
< 1 Hr. |
 |
4263 |
 |
 |
CVE-2020-8163: Rails local name RCE |
2-4 Hr. |
 |
154 |
 |
 |
SAML: Known Key |
1-2 Hr. |
 |
312 |
 |
 |
Code Review 09 |
1-2 Hr. |
 |
82 |
 |
 |
Recon 04 |
< 1 Hr. |
 |
7158 |
 |
 |
Recon 05 |
< 1 Hr. |
 |
5404 |
 |
 |
Recon 01 |
< 1 Hr. |
 |
9489 |
 |
 |
OAuth2: Client Server XSS |
1-2 Hr. |
 |
252 |
 |
 |
Zip symlink |
< 1 Hr. |
 |
418 |
 |
 |
Code Review 08 |
1-2 Hr. |
 |
106 |
 |
 |
SAML: Comment Injection |
< 1 Hr. |
 |
1144 |
 |
 |
Unicode and Downcase |
< 1 Hr. |
 |
430 |
 |
 |
Code Review 07 |
1-2 Hr. |
 |
110 |
 |
 |
Java Serialize 01 |
< 1 Hr. |
 |
256 |
 |
 |
Unicode and Uppercase |
< 1 Hr. |
 |
487 |
 |
 |
Code Review 06 |
2-4 Hr. |
 |
53 |
 |
 |
Cross-Site Leak |
2-4 Hr. |
 |
448 |
 |
 |
From SQL injection to Shell III: PostgreSQL Edition |
2-4 Hr. |
 |
122 |
 |
 |
OAuth2: Client CSRF II |
2-4 Hr. |
 |
361 |
 |
 |
XSS Include |
< 1 Hr. |
 |
1023 |
 |
 |
OAuth2: Client CSRF |
< 1 Hr. |
 |
745 |
 |
 |
Code Review 05 |
2-4 Hr. |
 |
84 |
 |
 |
Code Review 04 |
1-2 Hr. |
 |
185 |
 |
 |
JS Prototype Pollution |
< 1 Hr. |
 |
655 |
 |
 |
OAuth2: Authorization Server CSRF |
1-2 Hr. |
 |
871 |
 |
 |
Code Review 03 |
2-4 Hr. |
 |
99 |
 |
 |
SSRF in PDF generation |
< 1 Hr. |
 |
677 |
 |
 |
OAuth2: Github HTTP HEAD |
1-2 Hr. |
 |
355 |
 |
 |
SVG XSS |
< 1 Hr. |
 |
1393 |
 |
 |
Apache Pluto RCE |
< 1 Hr. |
 |
395 |
 |
 |
JSON Cross-Site Request Forgery |
< 1 Hr. |
 |
1198 |
 |
 |
Cross-Site Request Forgery |
< 1 Hr. |
 |
1299 |
 |
 |
Code Review 02 |
1-2 Hr. |
 |
222 |
 |
 |
postMessage() IV |
< 1 Hr. |
 |
750 |
 |
 |
Spring Actuators |
1-2 Hr. |
 |
209 |
 |
 |
postMessage() III |
1-2 Hr. |
 |
764 |
 |
 |
postMessage() II |
< 1 Hr. |
 |
847 |
 |
 |
PHP phar:// |
< 1 Hr. |
 |
260 |
 |
 |
Signing Oracle |
< 1 Hr. |
 |
612 |
 |
 |
Length Extension Attack |
1-2 Hr. |
 |
544 |
 |
 |
JSON Web Encryption |
< 1 Hr. |
 |
394 |
 |
 |
postMessage() |
< 1 Hr. |
 |
959 |
 |
 |
CVE-2019-5418 |
1-2 Hr. |
 |
368 |
 |
 |
Cross-Site WebSocket Hijacking |
< 1 Hr. |
 |
881 |
 |
 |
JWT XII |
1-2 Hr. |
 |
502 |
 |
 |
Cross-Origin Resource Sharing II |
< 1 Hr. |
 |
828 |
 |
 |
JWT XI |
1-2 Hr. |
 |
500 |
 |
 |
cve-2019-5420 II |
1-2 Hr. |
 |
413 |
 |
 |
OAuth2: Client OpenRedirect |
< 1 Hr. |
 |
668 |
 |
 |
CVE-2019-5420 |
2-4 Hr. |
 |
662 |
 |
 |
JWT X |
< 1 Hr. |
 |
568 |
 |
 |
GraphQL: SQL Injection |
1-2 Hr. |
 |
1021 |
 |
 |
OAuth2: Authorization Server OpenRedirect |
< 1 Hr. |
 |
767 |
 |
 |
JWT IX |
< 1 Hr. |
 |
662 |
 |
 |
Gogs RCE II |
< 1 Hr. |
 |
443 |
 |
 |
JWT VIII |
1-2 Hr. |
 |
710 |
 |
 |
SAML: Signature Stripping |
< 1 Hr. |
 |
1515 |
 |
 |
GraphQL Introspection |
< 1 Hr. |
 |
1769 |
 |
 |
Gogs RCE |
1-2 Hr. |
 |
504 |
 |
 |
Android 07 |
1-2 Hr. |
 |
1087 |
 |
 |
Android 06 |
1-2 Hr. |
 |
1269 |
 |
 |
Android 05 |
1-2 Hr. |
 |
1506 |
 |
 |
Ruby 2.x Universal RCE Deserialization Gadget Chain |
< 1 Hr. |
 |
1088 |
 |
 |
CVE-2018-10933: LibSSH auth bypass |
-- |
 |
0 |
 |
 |
Android 04 |
< 1 Hr. |
 |
1932 |
 |
 |
Android 03 |
< 1 Hr. |
 |
2616 |
 |
 |
From SQL injection to Shell III |
1-2 Hr. |
 |
845 |
 |
 |
Android 02 |
< 1 Hr. |
 |
2849 |
 |
 |
IDOR to Shell |
1-2 Hr. |
 |
789 |
 |
 |
Android 01 |
< 1 Hr. |
 |
3039 |
 |
 |
Introduction to CSP |
< 1 Hr. |
 |
2067 |
 |
 |
CVE-2018-11235: Git Submodule RCE |
2-4 Hr. |
 |
412 |
 |
 |
Git Information Leak II |
< 1 Hr. |
 |
2099 |
 |
 |
Git Information Leak |
< 1 Hr. |
 |
2780 |
 |
 |
JWT VII |
< 1 Hr. |
 |
2654 |
 |
 |
CVE-2016-5386: HTTPoxy/Golang HTTProxy namespace conflict |
< 1 Hr. |
 |
738 |
 |
 |
Unix 31 |
< 1 Hr. |
 |
11813 |
 |
 |
Unix 30 |
< 1 Hr. |
 |
11855 |
 |
 |
Unix 25 |
< 1 Hr. |
 |
12408 |
 |
 |
Unix 32 |
< 1 Hr. |
 |
11799 |
 |
 |
Unix 34 |
< 1 Hr. |
 |
11743 |
 |
 |
Unix 33 |
< 1 Hr. |
 |
11776 |
 |
 |
Unix 27 |
< 1 Hr. |
 |
12261 |
 |
 |
Unix 29 |
< 1 Hr. |
 |
12197 |
 |
 |
Unix 28 |
< 1 Hr. |
 |
12214 |
 |
 |
Unix 26 |
< 1 Hr. |
 |
12331 |
 |
 |
CBC-MAC II |
1-2 Hr. |
 |
1397 |
 |
 |
JWT VI |
< 1 Hr. |
 |
2047 |
 |
 |
CVE-2018-6574: go get RCE |
< 1 Hr. |
 |
718 |
 |
 |
Unix 11 |
< 1 Hr. |
 |
16471 |
 |
 |
Unix 12 |
< 1 Hr. |
 |
16021 |
 |
 |
Unix 13 |
< 1 Hr. |
 |
15345 |
 |
 |
Unix 14 |
< 1 Hr. |
 |
14994 |
 |
 |
Unix 15 |
< 1 Hr. |
 |
13713 |
 |
 |
Unix 16 |
< 1 Hr. |
 |
13408 |
 |
 |
Unix 17 |
< 1 Hr. |
 |
13620 |
 |
 |
Unix 18 |
< 1 Hr. |
 |
13559 |
 |
 |
Unix 19 |
< 1 Hr. |
 |
13471 |
 |
 |
Unix 20 |
< 1 Hr. |
 |
12644 |
 |
 |
Unix 21 |
< 1 Hr. |
 |
12792 |
 |
 |
Unix 22 |
< 1 Hr. |
 |
12671 |
 |
 |
Unix 23 |
< 1 Hr. |
 |
12479 |
 |
 |
Unix 24 |
< 1 Hr. |
 |
12414 |
 |
 |
JWT V |
< 1 Hr. |
 |
2446 |
 |
 |
CVE-2018-0114 |
2-4 Hr. |
 |
1481 |
 |
 |
JWT IV |
< 1 Hr. |
 |
2171 |
 |
 |
CBC-MAC |
1-2 Hr. |
 |
1358 |
 |
 |
JWT III |
1-2 Hr. |
 |
2326 |
 |
 |
Code Execution 09 |
< 1 Hr. |
 |
9040 |
 |
 |
Server Side Template Injection 02 |
< 1 Hr. |
 |
7098 |
 |
 |
MongoDB Injection 02 |
1-2 Hr. |
 |
7127 |
 |
 |
Authorization 06 |
< 1 Hr. |
 |
12220 |
 |
 |
Code Execution 08 |
< 1 Hr. |
 |
9139 |
 |
 |
Authorization 04 |
< 1 Hr. |
 |
13197 |
 |
 |
Authorization 05 |
< 1 Hr. |
 |
12726 |
 |
 |
Command Execution 03 |
< 1 Hr. |
 |
9406 |
 |
 |
Server Side Template Injection 01 |
< 1 Hr. |
 |
7090 |
 |
 |
Code Execution 05 |
< 1 Hr. |
 |
10423 |
 |
 |
Code Execution 06 |
< 1 Hr. |
 |
10200 |
 |
 |
Code Execution 07 |
< 1 Hr. |
 |
9986 |
 |
 |
Introduction to code review |
-- |
 |
0 |
 |
 |
S2-052 |
< 1 Hr. |
 |
2100 |
 |
 |
SQL Injection 06 |
< 1 Hr. |
 |
7730 |
 |
 |
XML Attacks 01 |
< 1 Hr. |
 |
7508 |
 |
 |
XML Attacks 02 |
< 1 Hr. |
 |
7125 |
 |
 |
SQL Injection 04 |
< 1 Hr. |
 |
8189 |
 |
 |
SQL Injection 05 |
< 1 Hr. |
 |
8117 |
 |
 |
SQL Injection 01 |
< 1 Hr. |
 |
9066 |
 |
 |
SQL Injection 02 |
< 1 Hr. |
 |
8778 |
 |
 |
SQL Injection 03 |
< 1 Hr. |
 |
8564 |
 |
 |
Code Execution 02 |
< 1 Hr. |
 |
11522 |
 |
 |
Authorization 03 |
< 1 Hr. |
 |
14063 |
 |
 |
Command Execution 01 |
< 1 Hr. |
 |
9813 |
 |
 |
Command Execution 02 |
< 1 Hr. |
 |
9516 |
 |
 |
Server Side Request Forgery 04 |
< 1 Hr. |
 |
8057 |
 |
 |
Open Redirect 01 |
< 1 Hr. |
 |
8303 |
 |
 |
Open Redirect 02 |
< 1 Hr. |
 |
8031 |
 |
 |
MongoDB Injection 01 |
< 1 Hr. |
 |
8443 |
 |
 |
SAML: Introduction |
< 1 Hr. |
 |
2088 |
 |
 |
Server Side Request Forgery 02 |
< 1 Hr. |
 |
8353 |
 |
 |
Server Side Request Forgery 03 |
< 1 Hr. |
 |
8326 |
 |
 |
Server Side Request Forgery 01 |
< 1 Hr. |
 |
8496 |
 |
 |
XSS 09 |
< 1 Hr. |
 |
7543 |
 |
 |
XSS 10 |
< 1 Hr. |
 |
6997 |
 |
 |
Directory Traversal 01 |
< 1 Hr. |
 |
9928 |
 |
 |
Directory Traversal 02 |
< 1 Hr. |
 |
9774 |
 |
 |
Directory Traversal 03 |
< 1 Hr. |
 |
9671 |
 |
 |
XSS 02 |
< 1 Hr. |
 |
8865 |
 |
 |
XSS 03 |
< 1 Hr. |
 |
8563 |
 |
 |
XSS 04 |
< 1 Hr. |
 |
8144 |
 |
 |
XSS 05 |
< 1 Hr. |
 |
7919 |
 |
 |
XSS 06 |
< 1 Hr. |
 |
7885 |
 |
 |
XSS 07 |
< 1 Hr. |
 |
7753 |
 |
 |
XSS 08 |
< 1 Hr. |
 |
7642 |
 |
 |
File Upload 01 |
< 1 Hr. |
 |
7734 |
 |
 |
File Upload 02 |
< 1 Hr. |
 |
7643 |
 |
 |
XSS 01 |
< 1 Hr. |
 |
9183 |
 |
 |
Authentication 05 |
< 1 Hr. |
 |
14407 |
 |
 |
Code Execution 03 |
< 1 Hr. |
 |
10969 |
 |
 |
Code Execution 04 |
< 1 Hr. |
 |
10774 |
 |
 |
File Include 01 |
< 1 Hr. |
 |
9244 |
 |
 |
File Include 02 |
< 1 Hr. |
 |
9035 |
 |
 |
LDAP 01 |
< 1 Hr. |
 |
8948 |
 |
 |
LDAP 02 |
< 1 Hr. |
 |
8588 |
 |
 |
Authentication 04 |
< 1 Hr. |
 |
15061 |
 |
 |
Authentication 01 |
< 1 Hr. |
 |
16348 |
 |
 |
Authentication 02 |
< 1 Hr. |
 |
15798 |
 |
 |
Authentication 03 |
< 1 Hr. |
 |
15342 |
 |
 |
Authorization 01 |
< 1 Hr. |
 |
14541 |
 |
 |
Authorization 02 |
< 1 Hr. |
 |
14267 |
 |
 |
Code Execution 01 |
< 1 Hr. |
 |
12216 |
 |
 |
CVE-2016-10033: PHPMailer RCE |
< 1 Hr. |
 |
3144 |
 |
 |
Cipher block chaining |
1-2 Hr. |
 |
2432 |
 |
 |
Struts s2-045 |
< 1 Hr. |
 |
2340 |
 |
 |
CVE-2016-2098 |
< 1 Hr. |
 |
3063 |
 |
 |
CVE-2014-4511: Gitlist RCE |
-- |
 |
0 |
 |
 |
ECDSA |
2-4 Hr. |
 |
309 |
 |
 |
Werkzeug DEBUG |
< 1 Hr. |
 |
1398 |
 |
 |
Padding Oracle |
1-2 Hr. |
 |
751 |
 |
 |
Unickle |
1-2 Hr. |
 |
601 |
 |
 |
CVE-2015-3224 |
< 1 Hr. |
 |
1402 |
 |
 |
Luhn |
2-4 Hr. |
 |
548 |
 |
 |
CVE-2013-0156: Rails Object Injection |
< 1 Hr. |
 |
3504 |
 |
 |
JSON Web Token II |
1-2 Hr. |
 |
3081 |
 |
 |
CVE-2016-0792 |
< 1 Hr. |
 |
4117 |
 |
 |
ObjectInputStream |
< 1 Hr. |
 |
3762 |
 |
 |
XMLDecoder |
< 1 Hr. |
 |
4592 |
 |
 |
CVE-2014-1266 |
1-2 Hr. |
 |
1014 |
 |
 |
CVE-2011-0228 |
1-2 Hr. |
 |
1167 |
 |
 |
Intercept 03 |
< 1 Hr. |
 |
1429 |
 |
 |
Intercept 02 |
< 1 Hr. |
 |
1570 |
 |
 |
Intercept 01 |
1-2 Hr. |
 |
1730 |
 |
 |
Struts devMode |
-- |
 |
0 |
 |
 |
JSON Web Token |
< 1 Hr. |
 |
8528 |
 |
 |
Cross-Origin Resource Sharing |
-- |
 |
0 |
 |
 |
API to Shell |
2-4 Hr. |
 |
2992 |
 |
 |
Pickle Code Execution |
< 1 Hr. |
 |
5543 |
 |
 |
Play XML Entities |
1-2 Hr. |
 |
1904 |
 |
 |
CVE-2014-6271/Shellshock |
< 1 Hr. |
 |
7722 |
 |
 |
Play Session Injection |
< 1 Hr. |
 |
2410 |
 |
 |
CVE-2007-1860: mod_jk double-decoding |
1-2 Hr. |
 |
5302 |
 |
 |
XSS and MySQL FILE |
-- |
 |
0 |
 |
 |
Electronic Code Book |
1-2 Hr. |
 |
5063 |
 |
 |
Web for Pentester II |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell II |
-- |
 |
0 |
 |
 |
CVE-2012-6081: MoinMoin code execution |
-- |
 |
0 |
 |
 |
Web for Pentester |
-- |
 |
0 |
 |
 |
Axis2 Web service and Tomcat Manager |
-- |
 |
0 |
 |
 |
CVE-2008-1930: Wordpress 2.5 Cookie Integrity Protection Vulnerability |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell: PostgreSQL edition |
-- |
 |
0 |
 |
 |
Rack Cookies and Commands injection |
-- |
 |
0 |
 |
 |
Linux Host Review |
-- |
 |
0 |
 |
 |
CVE-2012-2661: ActiveRecord SQL injection |
-- |
 |
0 |
 |
 |
CVE-2012-1823: PHP CGI |
-- |
 |
0 |
 |
 |
PHP Include And Post Exploitation |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell |
< 1 Hr. |
 |
7057 |
 |
 |
Code Review 01 |
1-2 Hr. |
 |
352 |
 |
 |
Introduction 01 |
< 1 Hr. |
 |
24250 |
 |
 |
Recon 00 |
< 1 Hr. |
 |
9462 |
 |
 |
Introduction 02 |
< 1 Hr. |
 |
23975 |
 |
 |
Recon 02 |
< 1 Hr. |
 |
7790 |
 |
 |
Introduction 03 |
< 1 Hr. |
 |
23483 |
 |
 |
Recon 03 |
< 1 Hr. |
 |
6935 |
 |
 |
Introduction 00 |
< 1 Hr. |
 |
25025 |
 |
 |
Recon 10 |
< 1 Hr. |
 |
2995 |
 |
 |
Recon 09 |
< 1 Hr. |
 |
4777 |
 |
 |
Code Review 17 |
1-2 Hr. |
 |
51 |
 |
 |
Unix 00 |
< 1 Hr. |
 |
21271 |
 |
 |
Unix 01 |
< 1 Hr. |
 |
20792 |
 |
 |
Unix 02 |
< 1 Hr. |
 |
20581 |
 |
 |
Unix 03 |
< 1 Hr. |
 |
20322 |
 |
 |
Unix 04 |
< 1 Hr. |
 |
20054 |
 |
 |
Unix 05 |
< 1 Hr. |
 |
19085 |
 |
 |
Unix 06 |
< 1 Hr. |
 |
18325 |
 |
 |
Unix 07 |
< 1 Hr. |
 |
18022 |
 |
 |
Unix 08 |
< 1 Hr. |
 |
17753 |
 |
 |
Unix 09 |
< 1 Hr. |
 |
17220 |
 |
 |
Unix 10 |
< 1 Hr. |
 |
16773 |
 |
 |
PCAP 01 |
< 1 Hr. |
 |
6429 |
 |
 |
PCAP 02 |
< 1 Hr. |
 |
6274 |
 |
 |
PCAP 03 |
< 1 Hr. |
 |
6192 |
 |
 |
PCAP 04 |
< 1 Hr. |
 |
5958 |
 |
 |
PCAP 05 |
< 1 Hr. |
 |
5853 |
 |
 |
PCAP 06 |
< 1 Hr. |
 |
5765 |
 |
 |
PCAP 07 |
< 1 Hr. |
 |
5709 |
 |
 |
PCAP 08 |
< 1 Hr. |
 |
5663 |
 |
 |
PCAP 09 |
< 1 Hr. |
 |
5635 |
 |
 |
PCAP 10 |
< 1 Hr. |
 |
5336 |
 |
 |
PCAP 11 |
< 1 Hr. |
 |
5330 |
 |
 |
PCAP 12 |
< 1 Hr. |
 |
5315 |
 |
 |
PCAP 13 |
< 1 Hr. |
 |
5366 |
 |
 |
Java Snippet #01 |
< 1 Hr. |
 |
609 |
 |
 |
PCAP 14 |
< 1 Hr. |
 |
5349 |
 |
 |
Java Snippet #02 |
< 1 Hr. |
 |
536 |
 |
 |
PCAP 15 |
< 1 Hr. |
 |
5338 |
 |
 |
Java Snippet #03 |
< 1 Hr. |
 |
493 |
 |
 |
PCAP 16 |
< 1 Hr. |
 |
5312 |
 |
 |
PCAP 17 |
< 1 Hr. |
 |
5260 |
 |
 |
PCAP 18 |
< 1 Hr. |
 |
5256 |
 |
 |
PCAP 19 |
< 1 Hr. |
 |
5236 |
 |
 |
PCAP 20 |
< 1 Hr. |
 |
5137 |
 |
 |
PCAP 21 |
< 1 Hr. |
 |
5087 |
 |
 |
PCAP 22 |
< 1 Hr. |
 |
5074 |
 |
 |
PCAP 23 |
< 1 Hr. |
 |
5065 |
 |
 |
PCAP 24 |
< 1 Hr. |
 |
5053 |
 |
 |
PCAP 25 |
< 1 Hr. |
 |
5056 |
 |
 |
PCAP 26 |
< 1 Hr. |
 |
5054 |
 |
 |
PCAP 27 |
< 1 Hr. |
 |
5004 |
 |
 |
PCAP 28 |
< 1 Hr. |
 |
4984 |
 |
 |
PCAP 29 |
< 1 Hr. |
 |
4971 |
 |
 |
PCAP 30 |
< 1 Hr. |
 |
4947 |
 |
 |
PCAP 31 |
< 1 Hr. |
 |
4927 |
 |
 |
PCAP 32 |
< 1 Hr. |
 |
4857 |
 |
 |
CVE-2021-4xx50 |
< 1 Hr. |
 |
320 |
 |
 |
PCAP 33 |
< 1 Hr. |
 |
4769 |
 |
 |
PCAP 34 |
< 1 Hr. |
 |
4832 |
 |
 |
PCAP 35 |
< 1 Hr. |
 |
4895 |
 |
 |
Android 08 |
1-2 Hr. |
 |
1027 |
 |
No search results found... |