Deranged0tter's Writeups
NotesGitHub
  • HackTheBox
    • Knife
  • PortSwigger Labs
    • Cross-Site Scripting
      • Reflected XSS into HTML context with nothing encoded
      • Stored XSS into HTML context with nothing encoded
      • DOM XSS in document.write sink using source location.search *
    • SQL Injection *
    • Cross-Site Request Forgery (CSRF) *
    • Clickjacking *
    • DOM-Based Vulnerabilities *
    • Cross-Origin Resource Sharing (CORS) *
    • XML External Entity (XXE) Injection *
    • Server-Side Request Forgery (SSRF) *
    • HTTP Request Smuggling *
    • OS Command Injection *
    • Server-Side Template Injection *
    • Path Traversal *
    • Access Control Vulnerabilities *
    • Authentication *
    • WebSockets *
    • Web Cache Poisoning *
    • Insecure Deserialization *
    • Information Disclosure *
    • Business Logic Vulnerabilities *
    • HTTP Host Header Attacks *
    • OAuth Authentication *
    • File Upload Vulnerabilities *
    • JSON Web Token (JWT) *
    • Essential Skills *
    • Prototype Pollution *
    • GraphQL API Vulnerabilities *
    • Race Conditions *
    • NoSQL Injection *
    • API Testing *
Powered by GitBook
On this page
  1. PortSwigger Labs

Cross-Site Request Forgery (CSRF) *

PreviousSQL Injection *NextClickjacking *

Last updated 1 year ago