Links

A lot of these were found herearrow-up-right.

Other notebooks

Open services

Hacktricksarrow-up-right contains a lot of information about pentesting specific protocols, as well as other gems.

SSTI, SQLI, LFI, RFI, ...

Anywhere user input is accepted, there's a possibility for format trickery.

PayloadsAllTheThingsarrow-up-right has excellent lists of everything from server-side template injections to file traversal paths, etc. Take one of the intruder files and use it in your own scanning tool to quickly evaluate what's open and what's not.

This cheat sheetarrow-up-right contains a lot of tools and links.

Unicode normalization bypass

Thisarrow-up-right page is about open redirects, but contains a neat table of unicode replacements that normalize to numbers and letters.

OSINT

jivoiarrow-up-right

Privesc

m0nadarrow-up-right

Windows and DOS

Docs and sucharrow-up-right for various microsoft platforms

Last updated