Navigation:
- Intelligence Gathering
- Write-ups
- Web
- Code Injection
- https://hackmd.io/@Chivato/SkKfAjuV8
- PayLoadsAllTheThings
- Penetration Testing Execution Standard
- PTES Technical Guidelines (Really good source of information)
- OWASP - Juice Shop (Docker version)
- This is a vulnerable web app that let's you try out different kinds of attacks, like XSS, SQL Injection, misconfiguration exploits and even more! There are also tutorials in the hidden score-board that help in learning about various vulnerabilities.
- Google Gruyere
- Google Gruyere has a lot of vulnerabilities that let you do practically anything on the page.