diff options
Diffstat (limited to 'ctf/web.md')
-rw-r--r-- | ctf/web.md | 31 |
1 files changed, 28 insertions, 3 deletions
@@ -1,5 +1,30 @@ -# Web Security - -## Resources +# web security - [websec.fr](https://websec.fr) + +## tooling + +- devtools +- burp suite +- mitmproxy +- ??? + +## common attacks + +### sqli: sql injection + +### xss: cross-site scripting + +### xxe: external entity injection + +### csrf: cross-site request forgery + +### ssrf: server-side request forgery + +### request smuggling + +### prototype pollution + +## common failures + +### trusting headers |