
PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
ctfcurated-resourceseducation+7
80.2k

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Curated XSS payload collection and filter-bypass cheat sheet: WAF-specific evasion, JS/HTML injection vectors, encoding tricks, DOMPurify and…

Here Are Some Bug Bounty Resource From Twitter

Technical dossier on the DPRK-linked PolinRider supply-chain attack, documenting obfuscated JS payload injection, git history manipulation, C2…

SecRep Is a Repository That Contain Useful Intrusion, Penetration and Hacking Archive Including Tools List, Cheetsheet and Payloads

Log4Shell / Log4J Payload - CVE-2021-45046 and CVE-2022-42889
