6:48
NGINX: misconfigurations examples
KacperSzurekEN
Shared 6 years ago
8K views
4:44
Kallithea - exploit git clone functionality
1.2K views
4:14
PHP PHAR - file_exists can be dangerous
3.9K views
4:08
SSH: How to login into multiple servers?
4.4K views
3:36
Spring Boot Actuator - security point of view
2.5K views
4:50
How to check account type using Burp Suite?
2:55
How to handle session expiration in BURP with macros?
8.4K views
4:16
[BURP] 12 tricks for Burp Repeater
5.5K views
6:01
XSS Polyglot
Shared 7 years ago
6.9K views
3:45
postMessage: exchange data between different domains
43K views
5:48
Cross-Site Websocket Hijacking
11K views
9:03
Don't use assert in PHP
4:42
Clickjacking: how to delete someone else's account?
23K views
4:12
Open redirection: can automatic redirection be harmful?
1.8K views
3:41
RFD: Reflected File Download
3:00
Excel: CSV Injection
16K views
3:43
Angular: XSS without HTML tags
6K views
3:42
Python: XSS using SVG file
3.6K views
3:16
PHP: escapeshellcmd vs escapeshellarg
2.2K views
3:22
Java: Random vs SecureRandom
6.2K views
2:46
YAML: code execution using !!python/object
14K views
3:20
Python SSTI: Attack Flask framework using Jinja2 template engine
8.6K views
3:21
PHP: Bypass filters using less-than sign
3.8K views
3:08
Unzip: how to properly extract files? Symlinks and zip
1.6K views
3:05
Java XXE: Read secret files when parsing XML files
2.8K views
2:58
Ruby: execute command using URL in open() function
1.7K views
2:41
Python 2: Why you shouldn’t use input function
1K views
14:04
How does Two-Factor Authentication - 2FA work?
21K views
8:56
Race condition and git hooks vs Gitea server
11:28
Steal messages from Signal using RCE, CVE-2018-10994 explanation
784 views
8:20
Best Black Hat 2018 and DEF CON 26 presentations - summary
240 views
11:46
4 common Node.js security issues inside NPM
7:06
How to create a Metasploit module in example
6.6K views
6:37
Best Black Hat 2018 and DEF CON 26 presentations - summary #2
183 views