summaryrefslogtreecommitdiff
path: root/ctf/web.md
diff options
context:
space:
mode:
authorJJ2023-11-24 03:35:03 +0000
committerJJ2023-11-24 03:35:03 +0000
commit384af43d4220eb93abe06668210c594923fb9a8c (patch)
tree3762c806c6034bb1d52d2ecef76bb43f79509298 /ctf/web.md
parent426d431d03599b65dee1ddffd8923098cbaa79b0 (diff)
meow
Diffstat (limited to 'ctf/web.md')
-rw-r--r--ctf/web.md31
1 files changed, 28 insertions, 3 deletions
diff --git a/ctf/web.md b/ctf/web.md
index 3e40a62..09107d1 100644
--- a/ctf/web.md
+++ b/ctf/web.md
@@ -1,5 +1,30 @@
-# Web Security
-
-## Resources
+# web security
- [websec.fr](https://websec.fr)
+
+## tooling
+
+- devtools
+- burp suite
+- mitmproxy
+- ???
+
+## common attacks
+
+### sqli: sql injection
+
+### xss: cross-site scripting
+
+### xxe: external entity injection
+
+### csrf: cross-site request forgery
+
+### ssrf: server-side request forgery
+
+### request smuggling
+
+### prototype pollution
+
+## common failures
+
+### trusting headers