 |
XSL PHP V |
1-2 Hr. |
 |
5 |
 |
 |
API Payments 07 |
< 1 Hr. |
 |
39 |
 |
 |
CVE-2021-22204: Exiftool RCE II |
< 1 Hr. |
 |
10 |
 |
 |
XSL PHP IV |
> 4 Hr. |
 |
8 |
 |
 |
API Payments 06 |
< 1 Hr. |
 |
70 |
 |
 |
CVE-2022-39224 |
2-4 Hr. |
 |
6 |
 |
 |
XSL PHP III |
< 1 Hr. |
 |
26 |
 |
 |
DOMPDF RCE II |
1-2 Hr. |
 |
4 |
 |
 |
DOMPDF RCE |
< 1 Hr. |
 |
25 |
 |
 |
API Payments 05 |
< 1 Hr. |
 |
139 |
 |
 |
XSL PHP II |
< 1 Hr. |
 |
56 |
 |
 |
API Payments 04 |
1-2 Hr. |
 |
224 |
 |
 |
XSL PHP |
< 1 Hr. |
 |
72 |
 |
 |
API Payments 03 |
< 1 Hr. |
 |
311 |
 |
 |
Code Review 18 |
1-2 Hr. |
 |
30 |
 |
 |
CVE-2020-13xxx |
< 1 Hr. |
 |
104 |
 |
 |
CVE-2022-3x7x1 |
< 1 Hr. |
 |
150 |
 |
 |
CVE-2008-5x8x |
< 1 Hr. |
 |
123 |
 |
 |
Python Snippet #02 |
< 1 Hr. |
 |
527 |
 |
 |
Java Snippet #10 |
< 1 Hr. |
 |
276 |
 |
 |
Java Snippet #11 |
< 1 Hr. |
 |
271 |
 |
 |
Java Snippet #12 |
< 1 Hr. |
 |
253 |
 |
 |
API Payments 02 |
< 1 Hr. |
 |
398 |
 |
 |
GCM Nonce Reuse |
< 1 Hr. |
 |
44 |
 |
 |
CVE-2019-5x2x |
< 1 Hr. |
 |
100 |
 |
 |
Java Snippet #07 |
< 1 Hr. |
 |
432 |
 |
 |
Java Snippet #08 |
< 1 Hr. |
 |
361 |
 |
 |
Java Snippet #09 |
< 1 Hr. |
 |
278 |
 |
 |
API Payments 01 |
< 1 Hr. |
 |
497 |
 |
 |
CVE-2022-26xx9 |
< 1 Hr. |
 |
101 |
 |
 |
Python Snippet #07 |
< 1 Hr. |
 |
377 |
 |
 |
Python Snippet #08 |
< 1 Hr. |
 |
323 |
 |
 |
Python Snippet #09 |
< 1 Hr. |
 |
368 |
 |
 |
Mongo IDOR |
< 1 Hr. |
 |
328 |
 |
 |
CVE-2008-5x8x_ii |
< 1 Hr. |
 |
109 |
 |
 |
CVE-2005-2x8x |
< 1 Hr. |
 |
116 |
 |
 |
Python Snippet #06 |
< 1 Hr. |
 |
449 |
 |
 |
Golang Snippet #01 |
< 1 Hr. |
 |
405 |
 |
 |
Java Snippet #06 |
< 1 Hr. |
 |
269 |
 |
 |
CVE-2022-21449 |
1-2 Hr. |
 |
39 |
 |
 |
CVE-2021-33564 Argument Injection in Ruby Dragonfly |
< 1 Hr. |
 |
62 |
 |
 |
CVE-2021-45xx9 |
< 1 Hr. |
 |
165 |
 |
 |
PHP Snippet #07 |
< 1 Hr. |
 |
417 |
 |
 |
PHP Snippet #08 |
< 1 Hr. |
 |
353 |
 |
 |
PHP Snippet #09 |
< 1 Hr. |
 |
354 |
 |
 |
Python Snippet #03 |
< 1 Hr. |
 |
441 |
 |
 |
Python Snippet #04 |
< 1 Hr. |
 |
398 |
 |
 |
Python Snippet #05 |
< 1 Hr. |
 |
426 |
 |
 |
CVE-2021-39x3x |
< 1 Hr. |
 |
107 |
 |
 |
CVE-2022-21724: JDBC RCE PostgreSQL |
< 1 Hr. |
 |
74 |
 |
 |
Java Snippet #04 |
< 1 Hr. |
 |
373 |
 |
 |
Java Snippet #05 |
< 1 Hr. |
 |
343 |
 |
 |
Ox Remote Code Execution II |
2-4 Hr. |
 |
11 |
 |
 |
CVE-2009-3x8x |
< 1 Hr. |
 |
144 |
 |
 |
HTTP 41 |
< 1 Hr. |
 |
1135 |
 |
 |
HTTP 42 |
< 1 Hr. |
 |
1149 |
 |
 |
HTTP 43 |
< 1 Hr. |
 |
1101 |
 |
 |
CVE-2021-381xx |
< 1 Hr. |
 |
138 |
 |
 |
H2 RCE |
< 1 Hr. |
 |
40 |
 |
 |
TypeScript Snippet #04 |
< 1 Hr. |
 |
245 |
 |
 |
TypeScript Snippet #05 |
< 1 Hr. |
 |
273 |
 |
 |
TypeScript Snippet #06 |
< 1 Hr. |
 |
215 |
 |
 |
TypeScript Snippet #07 |
< 1 Hr. |
 |
191 |
 |
 |
TypeScript Snippet #08 |
< 1 Hr. |
 |
220 |
 |
 |
TypeScript Snippet #09 |
< 1 Hr. |
 |
240 |
 |
 |
CVE-2008-4x9x |
< 1 Hr. |
 |
137 |
 |
 |
Log4j RCE II |
1-2 Hr. |
 |
86 |
 |
 |
Log4j RCE |
1-2 Hr. |
 |
213 |
 |
 |
CVE-2021-4379x |
< 1 Hr. |
 |
213 |
 |
 |
API 08 |
< 1 Hr. |
 |
576 |
 |
 |
JDBC RCE |
2-4 Hr. |
 |
33 |
 |
 |
CVE-2008-1x3x |
< 1 Hr. |
 |
194 |
 |
 |
Golang Snippet #12 |
< 1 Hr. |
 |
262 |
 |
 |
TypeScript Snippet #01 |
< 1 Hr. |
 |
365 |
 |
 |
TypeScript Snippet #02 |
< 1 Hr. |
 |
330 |
 |
 |
TypeScript Snippet #03 |
< 1 Hr. |
 |
325 |
 |
 |
API 07 |
< 1 Hr. |
 |
631 |
 |
 |
CVE-2021-40438 |
< 1 Hr. |
 |
173 |
 |
 |
CVE-2021-41773 |
< 1 Hr. |
 |
302 |
 |
 |
CVE-2021-41773 II |
1-2 Hr. |
 |
87 |
 |
 |
HTTP 36 |
< 1 Hr. |
 |
1320 |
 |
 |
HTTP 37 |
< 1 Hr. |
 |
1301 |
 |
 |
HTTP 38 |
< 1 Hr. |
 |
1305 |
 |
 |
HTTP 39 |
< 1 Hr. |
 |
1289 |
 |
 |
HTTP 40 |
< 1 Hr. |
 |
1305 |
 |
 |
CVE-2006-4xxx |
< 1 Hr. |
 |
212 |
 |
 |
CVE-2006-4xxx_ii |
< 1 Hr. |
 |
154 |
 |
 |
PHP Snippet #04 |
< 1 Hr. |
 |
556 |
 |
 |
PHP Snippet #05 |
< 1 Hr. |
 |
505 |
 |
 |
PHP Snippet #06 |
< 1 Hr. |
 |
555 |
 |
 |
API 06 |
< 1 Hr. |
 |
711 |
 |
 |
CVE-2021-37xxx |
< 1 Hr. |
 |
158 |
 |
 |
PHP Snippet #01 |
< 1 Hr. |
 |
897 |
 |
 |
PHP Snippet #02 |
< 1 Hr. |
 |
743 |
 |
 |
PHP Snippet #03 |
< 1 Hr. |
 |
580 |
 |
 |
HTTP 31 |
< 1 Hr. |
 |
1404 |
 |
 |
HTTP 32 |
< 1 Hr. |
 |
1390 |
 |
 |
HTTP 35 |
< 1 Hr. |
 |
1355 |
 |
 |
HTTP 34 |
< 1 Hr. |
 |
1361 |
 |
 |
HTTP 33 |
< 1 Hr. |
 |
1382 |
 |
 |
API 05 |
< 1 Hr. |
 |
879 |
 |
 |
API 04 |
< 1 Hr. |
 |
926 |
 |
 |
Golang Snippet #02 |
< 1 Hr. |
 |
432 |
 |
 |
Golang Snippet #03 |
< 1 Hr. |
 |
343 |
 |
 |
Golang Snippet #04 |
< 1 Hr. |
 |
408 |
 |
 |
Golang Snippet #05 |
< 1 Hr. |
 |
370 |
 |
 |
Golang Snippet #06 |
< 1 Hr. |
 |
305 |
 |
 |
Golang Snippet #07 |
< 1 Hr. |
 |
330 |
 |
 |
Golang Snippet #08 |
< 1 Hr. |
 |
303 |
 |
 |
Golang Snippet #09 |
< 1 Hr. |
 |
292 |
 |
 |
Golang Snippet #10 |
< 1 Hr. |
 |
307 |
 |
 |
Golang Snippet #11 |
< 1 Hr. |
 |
301 |
 |
 |
Javascript Snippet #01 |
< 1 Hr. |
 |
728 |
 |
 |
Javascript Snippet #02 |
< 1 Hr. |
 |
566 |
 |
 |
Javascript Snippet #03 |
< 1 Hr. |
 |
577 |
 |
 |
Javascript Snippet #04 |
< 1 Hr. |
 |
527 |
 |
 |
Javascript Snippet #05 |
< 1 Hr. |
 |
542 |
 |
 |
Javascript Snippet #06 |
< 1 Hr. |
 |
486 |
 |
 |
Javascript Snippet #07 |
< 1 Hr. |
 |
498 |
 |
 |
Python Snippet #01 |
< 1 Hr. |
 |
723 |
 |
 |
Ruby Snippet #01 |
1-2 Hr. |
 |
208 |
 |
 |
Ruby Snippet #02 |
< 1 Hr. |
 |
226 |
 |
 |
Ruby Snippet #03 |
< 1 Hr. |
 |
250 |
 |
 |
Ruby Snippet #04 |
< 1 Hr. |
 |
223 |
 |
 |
Ruby Snippet #05 |
< 1 Hr. |
 |
239 |
 |
 |
Ruby Snippet #06 |
< 1 Hr. |
 |
227 |
 |
 |
Ruby Snippet #07 |
< 1 Hr. |
 |
191 |
 |
 |
Ruby Snippet #08 |
< 1 Hr. |
 |
211 |
 |
 |
Ruby Snippet #09 |
< 1 Hr. |
 |
198 |
 |
 |
HTTP 26 |
< 1 Hr. |
 |
1543 |
 |
 |
HTTP 27 |
< 1 Hr. |
 |
1518 |
 |
 |
HTTP 28 |
< 1 Hr. |
 |
1492 |
 |
 |
HTTP 29 |
< 1 Hr. |
 |
1454 |
 |
 |
HTTP 30 |
< 1 Hr. |
 |
1415 |
 |
 |
CVE-2020-17xx7 |
< 1 Hr. |
 |
265 |
 |
 |
Ox Remote Code Execution |
2-4 Hr. |
 |
20 |
 |
 |
CVE-2020-9x9x |
< 1 Hr. |
 |
202 |
 |
 |
HTTP 21 |
< 1 Hr. |
 |
1644 |
 |
 |
HTTP 22 |
< 1 Hr. |
 |
1620 |
 |
 |
HTTP 23 |
< 1 Hr. |
 |
1594 |
 |
 |
HTTP 24 |
< 1 Hr. |
 |
1591 |
 |
 |
HTTP 25 |
< 1 Hr. |
 |
1588 |
 |
 |
HTTP 16 |
< 1 Hr. |
 |
1727 |
 |
 |
HTTP 20 |
< 1 Hr. |
 |
1654 |
 |
 |
HTTP 18 |
< 1 Hr. |
 |
1705 |
 |
 |
HTTP 19 |
< 1 Hr. |
 |
1677 |
 |
 |
HTTP 17 |
< 1 Hr. |
 |
1716 |
 |
 |
CVE-2020-17xx8 |
< 1 Hr. |
 |
185 |
 |
 |
CVE-2021-22204: Exiftool RCE |
1-2 Hr. |
 |
104 |
 |
 |
SSRF via FFMPEG II |
1-2 Hr. |
 |
82 |
 |
 |
API 03 |
< 1 Hr. |
 |
925 |
 |
 |
CVE-2020-11xxx |
< 1 Hr. |
 |
204 |
 |
 |
OAuth2: Authorization Server XSS II |
< 1 Hr. |
 |
170 |
 |
 |
HTTP 11 |
< 1 Hr. |
 |
1866 |
 |
 |
HTTP 15 |
< 1 Hr. |
 |
1800 |
 |
 |
HTTP 12 |
< 1 Hr. |
 |
1851 |
 |
 |
HTTP 13 |
< 1 Hr. |
 |
1821 |
 |
 |
HTTP 14 |
< 1 Hr. |
 |
1804 |
 |
 |
API 02 |
< 1 Hr. |
 |
1363 |
 |
 |
Express Local File Read |
< 1 Hr. |
 |
203 |
 |
 |
OAuth2: Authorization Server XSS |
< 1 Hr. |
 |
218 |
 |
 |
HTTP 10 |
< 1 Hr. |
 |
1946 |
 |
 |
HTTP 09 |
< 1 Hr. |
 |
1979 |
 |
 |
HTTP 07 |
< 1 Hr. |
 |
2076 |
 |
 |
HTTP 06 |
< 1 Hr. |
 |
2094 |
 |
 |
HTTP 08 |
< 1 Hr. |
 |
2010 |
 |
 |
HTTP 03 |
< 1 Hr. |
 |
2303 |
 |
 |
HTTP 04 |
< 1 Hr. |
 |
2235 |
 |
 |
HTTP 05 |
< 1 Hr. |
 |
2195 |
 |
 |
HTTP 02 |
< 1 Hr. |
 |
2392 |
 |
 |
HTTP 01 |
< 1 Hr. |
 |
2549 |
 |
 |
API 01 |
< 1 Hr. |
 |
1705 |
 |
 |
JSON Web Token XIII |
< 1 Hr. |
 |
83 |
 |
 |
SAML: Comment Injection II |
< 1 Hr. |
 |
332 |
 |
 |
Recon 24 |
< 1 Hr. |
 |
2088 |
 |
 |
Recon 25 |
1-2 Hr. |
 |
1293 |
 |
 |
Recon 26 |
< 1 Hr. |
 |
2083 |
 |
 |
SSRF via FFMPEG |
1-2 Hr. |
 |
165 |
 |
 |
SAML: Signature Wrapping II |
< 1 Hr. |
 |
246 |
 |
 |
RCE via argument injection |
2-4 Hr. |
 |
24 |
 |
 |
Code Review 16 |
< 1 Hr. |
 |
96 |
 |
 |
SAML: Signature Wrapping |
< 1 Hr. |
 |
324 |
 |
 |
Recon 20 |
< 1 Hr. |
 |
2281 |
 |
 |
Recon 21 |
< 1 Hr. |
 |
2237 |
 |
 |
Recon 22 |
< 1 Hr. |
 |
2106 |
 |
 |
Recon 23 |
< 1 Hr. |
 |
2121 |
 |
 |
SAML: SAMLResponse forwarding |
< 1 Hr. |
 |
285 |
 |
 |
CGI and Signature |
< 1 Hr. |
 |
119 |
 |
 |
Recon 17 |
< 1 Hr. |
 |
2434 |
 |
 |
Recon 18 |
< 1 Hr. |
 |
2308 |
 |
 |
Recon 19 |
< 1 Hr. |
 |
2133 |
 |
 |
Code Review 15 |
< 1 Hr. |
 |
97 |
 |
 |
Code Review 14 |
< 1 Hr. |
 |
104 |
 |
 |
CVE-2020-14343: PyYAML unsafe loader |
< 1 Hr. |
 |
186 |
 |
 |
OAuth2: State Fixation |
1-2 Hr. |
 |
259 |
 |
 |
Code Review 13 |
2-4 Hr. |
 |
70 |
 |
 |
CVE-2020-7115: Aruba Clearpass RCE |
1-2 Hr. |
 |
124 |
 |
 |
Code Review 12 |
< 1 Hr. |
 |
142 |
 |
 |
OAuth2: Predictable State II |
1-2 Hr. |
 |
177 |
 |
 |
Recon 13 |
< 1 Hr. |
 |
2948 |
 |
 |
Recon 14 |
< 1 Hr. |
 |
2676 |
 |
 |
Recon 15 |
< 1 Hr. |
 |
2277 |
 |
 |
Recon 16 |
< 1 Hr. |
 |
2483 |
 |
 |
EDDSA vulnerability in Monocypher |
1-2 Hr. |
 |
79 |
 |
 |
Code Review 11 |
2-4 Hr. |
 |
43 |
 |
 |
OAuth2: Predictable State |
2-4 Hr. |
 |
195 |
 |
 |
Code Review 10 |
< 1 Hr. |
 |
108 |
 |
 |
Recon 11 |
< 1 Hr. |
 |
2577 |
 |
 |
Recon 12 |
< 1 Hr. |
 |
2961 |
 |
 |
Unicode and NFKC |
< 1 Hr. |
 |
185 |
 |
 |
SAML: Trusted Embedded Key |
< 1 Hr. |
 |
303 |
 |
 |
Recon 06 |
< 1 Hr. |
 |
5074 |
 |
 |
Recon 07 |
< 1 Hr. |
 |
4491 |
 |
 |
Recon 08 |
< 1 Hr. |
 |
4019 |
 |
 |
CVE-2020-8163: Rails local name RCE |
2-4 Hr. |
 |
151 |
 |
 |
SAML: Known Key |
1-2 Hr. |
 |
298 |
 |
 |
Code Review 09 |
1-2 Hr. |
 |
78 |
 |
 |
Recon 04 |
< 1 Hr. |
 |
6768 |
 |
 |
Recon 05 |
< 1 Hr. |
 |
5103 |
 |
 |
Recon 01 |
< 1 Hr. |
 |
8963 |
 |
 |
OAuth2: Client Server XSS |
1-2 Hr. |
 |
248 |
 |
 |
Zip symlink |
< 1 Hr. |
 |
408 |
 |
 |
Code Review 08 |
1-2 Hr. |
 |
98 |
 |
 |
SAML: Comment Injection |
< 1 Hr. |
 |
1119 |
 |
 |
Unicode and Downcase |
< 1 Hr. |
 |
424 |
 |
 |
Code Review 07 |
1-2 Hr. |
 |
105 |
 |
 |
Java Serialize 01 |
< 1 Hr. |
 |
249 |
 |
 |
Unicode and Uppercase |
< 1 Hr. |
 |
480 |
 |
 |
Code Review 06 |
2-4 Hr. |
 |
49 |
 |
 |
Cross-Site Leak |
2-4 Hr. |
 |
445 |
 |
 |
From SQL injection to Shell III: PostgreSQL Edition |
2-4 Hr. |
 |
121 |
 |
 |
OAuth2: Client CSRF II |
2-4 Hr. |
 |
356 |
 |
 |
XSS Include |
< 1 Hr. |
 |
1010 |
 |
 |
OAuth2: Client CSRF |
< 1 Hr. |
 |
735 |
 |
 |
Code Review 05 |
2-4 Hr. |
 |
80 |
 |
 |
Code Review 04 |
1-2 Hr. |
 |
179 |
 |
 |
JS Prototype Pollution |
< 1 Hr. |
 |
642 |
 |
 |
OAuth2: Authorization Server CSRF |
1-2 Hr. |
 |
858 |
 |
 |
Code Review 03 |
2-4 Hr. |
 |
92 |
 |
 |
SSRF in PDF generation |
< 1 Hr. |
 |
664 |
 |
 |
OAuth2: Github HTTP HEAD |
1-2 Hr. |
 |
353 |
 |
 |
SVG XSS |
< 1 Hr. |
 |
1369 |
 |
 |
Apache Pluto RCE |
< 1 Hr. |
 |
391 |
 |
 |
JSON Cross-Site Request Forgery |
< 1 Hr. |
 |
1181 |
 |
 |
Cross-Site Request Forgery |
< 1 Hr. |
 |
1286 |
 |
 |
Code Review 02 |
1-2 Hr. |
 |
216 |
 |
 |
postMessage() IV |
< 1 Hr. |
 |
745 |
 |
 |
Spring Actuators |
1-2 Hr. |
 |
207 |
 |
 |
postMessage() III |
1-2 Hr. |
 |
759 |
 |
 |
postMessage() II |
< 1 Hr. |
 |
841 |
 |
 |
PHP phar:// |
< 1 Hr. |
 |
257 |
 |
 |
Signing Oracle |
< 1 Hr. |
 |
604 |
 |
 |
Length Extension Attack |
1-2 Hr. |
 |
532 |
 |
 |
JSON Web Encryption |
< 1 Hr. |
 |
386 |
 |
 |
postMessage() |
< 1 Hr. |
 |
951 |
 |
 |
CVE-2019-5418 |
1-2 Hr. |
 |
362 |
 |
 |
Cross-Site WebSocket Hijacking |
< 1 Hr. |
 |
874 |
 |
 |
JWT XII |
1-2 Hr. |
 |
493 |
 |
 |
Cross-Origin Resource Sharing II |
< 1 Hr. |
 |
820 |
 |
 |
JWT XI |
1-2 Hr. |
 |
490 |
 |
 |
cve-2019-5420 II |
1-2 Hr. |
 |
407 |
 |
 |
OAuth2: Client OpenRedirect |
< 1 Hr. |
 |
663 |
 |
 |
CVE-2019-5420 |
2-4 Hr. |
 |
649 |
 |
 |
JWT X |
< 1 Hr. |
 |
559 |
 |
 |
GraphQL: SQL Injection |
1-2 Hr. |
 |
998 |
 |
 |
OAuth2: Authorization Server OpenRedirect |
< 1 Hr. |
 |
760 |
 |
 |
JWT IX |
< 1 Hr. |
 |
649 |
 |
 |
Gogs RCE II |
< 1 Hr. |
 |
434 |
 |
 |
JWT VIII |
1-2 Hr. |
 |
696 |
 |
 |
SAML: Signature Stripping |
< 1 Hr. |
 |
1490 |
 |
 |
GraphQL Introspection |
< 1 Hr. |
 |
1739 |
 |
 |
Gogs RCE |
1-2 Hr. |
 |
491 |
 |
 |
Android 07 |
1-2 Hr. |
 |
1055 |
 |
 |
Android 06 |
1-2 Hr. |
 |
1233 |
 |
 |
Android 05 |
1-2 Hr. |
 |
1471 |
 |
 |
Ruby 2.x Universal RCE Deserialization Gadget Chain |
< 1 Hr. |
 |
1070 |
 |
 |
CVE-2018-10933: LibSSH auth bypass |
-- |
 |
0 |
 |
 |
Android 04 |
< 1 Hr. |
 |
1883 |
 |
 |
Android 03 |
< 1 Hr. |
 |
2560 |
 |
 |
From SQL injection to Shell III |
1-2 Hr. |
 |
827 |
 |
 |
Android 02 |
< 1 Hr. |
 |
2790 |
 |
 |
IDOR to Shell |
1-2 Hr. |
 |
776 |
 |
 |
Android 01 |
< 1 Hr. |
 |
2981 |
 |
 |
Introduction to CSP |
< 1 Hr. |
 |
2048 |
 |
 |
CVE-2018-11235: Git Submodule RCE |
2-4 Hr. |
 |
407 |
 |
 |
Git Information Leak II |
< 1 Hr. |
 |
2054 |
 |
 |
Git Information Leak |
< 1 Hr. |
 |
2719 |
 |
 |
JWT VII |
< 1 Hr. |
 |
2603 |
 |
 |
CVE-2016-5386: HTTPoxy/Golang HTTProxy namespace conflict |
< 1 Hr. |
 |
734 |
 |
 |
Unix 31 |
< 1 Hr. |
 |
11640 |
 |
 |
Unix 30 |
< 1 Hr. |
 |
11677 |
 |
 |
Unix 25 |
< 1 Hr. |
 |
12221 |
 |
 |
Unix 32 |
< 1 Hr. |
 |
11625 |
 |
 |
Unix 34 |
< 1 Hr. |
 |
11571 |
 |
 |
Unix 33 |
< 1 Hr. |
 |
11603 |
 |
 |
Unix 27 |
< 1 Hr. |
 |
12070 |
 |
 |
Unix 29 |
< 1 Hr. |
 |
12008 |
 |
 |
Unix 28 |
< 1 Hr. |
 |
12026 |
 |
 |
Unix 26 |
< 1 Hr. |
 |
12142 |
 |
 |
CBC-MAC II |
1-2 Hr. |
 |
1378 |
 |
 |
JWT VI |
< 1 Hr. |
 |
2005 |
 |
 |
CVE-2018-6574: go get RCE |
< 1 Hr. |
 |
714 |
 |
 |
Unix 11 |
< 1 Hr. |
 |
16174 |
 |
 |
Unix 12 |
< 1 Hr. |
 |
15743 |
 |
 |
Unix 13 |
< 1 Hr. |
 |
15076 |
 |
 |
Unix 14 |
< 1 Hr. |
 |
14728 |
 |
 |
Unix 15 |
< 1 Hr. |
 |
13483 |
 |
 |
Unix 16 |
< 1 Hr. |
 |
13201 |
 |
 |
Unix 17 |
< 1 Hr. |
 |
13411 |
 |
 |
Unix 18 |
< 1 Hr. |
 |
13347 |
 |
 |
Unix 19 |
< 1 Hr. |
 |
13264 |
 |
 |
Unix 20 |
< 1 Hr. |
 |
12461 |
 |
 |
Unix 21 |
< 1 Hr. |
 |
12604 |
 |
 |
Unix 22 |
< 1 Hr. |
 |
12482 |
 |
 |
Unix 23 |
< 1 Hr. |
 |
12290 |
 |
 |
Unix 24 |
< 1 Hr. |
 |
12226 |
 |
 |
JWT V |
< 1 Hr. |
 |
2401 |
 |
 |
CVE-2018-0114 |
2-4 Hr. |
 |
1457 |
 |
 |
JWT IV |
< 1 Hr. |
 |
2129 |
 |
 |
CBC-MAC |
1-2 Hr. |
 |
1338 |
 |
 |
JWT III |
1-2 Hr. |
 |
2280 |
 |
 |
Code Execution 09 |
< 1 Hr. |
 |
8889 |
 |
 |
Server Side Template Injection 02 |
< 1 Hr. |
 |
6981 |
 |
 |
MongoDB Injection 02 |
1-2 Hr. |
 |
7012 |
 |
 |
Authorization 06 |
< 1 Hr. |
 |
12008 |
 |
 |
Code Execution 08 |
< 1 Hr. |
 |
8990 |
 |
 |
Authorization 04 |
< 1 Hr. |
 |
12973 |
 |
 |
Authorization 05 |
< 1 Hr. |
 |
12507 |
 |
 |
Command Execution 03 |
< 1 Hr. |
 |
9244 |
 |
 |
Server Side Template Injection 01 |
< 1 Hr. |
 |
6973 |
 |
 |
Code Execution 05 |
< 1 Hr. |
 |
10257 |
 |
 |
Code Execution 06 |
< 1 Hr. |
 |
10037 |
 |
 |
Code Execution 07 |
< 1 Hr. |
 |
9820 |
 |
 |
Introduction to code review |
-- |
 |
0 |
 |
 |
S2-052 |
< 1 Hr. |
 |
2075 |
 |
 |
SQL Injection 06 |
< 1 Hr. |
 |
7582 |
 |
 |
XML Attacks 01 |
< 1 Hr. |
 |
7375 |
 |
 |
XML Attacks 02 |
< 1 Hr. |
 |
7004 |
 |
 |
SQL Injection 04 |
< 1 Hr. |
 |
8026 |
 |
 |
SQL Injection 05 |
< 1 Hr. |
 |
7956 |
 |
 |
SQL Injection 01 |
< 1 Hr. |
 |
8875 |
 |
 |
SQL Injection 02 |
< 1 Hr. |
 |
8593 |
 |
 |
SQL Injection 03 |
< 1 Hr. |
 |
8391 |
 |
 |
Code Execution 02 |
< 1 Hr. |
 |
11338 |
 |
 |
Authorization 03 |
< 1 Hr. |
 |
13838 |
 |
 |
Command Execution 01 |
< 1 Hr. |
 |
9635 |
 |
 |
Command Execution 02 |
< 1 Hr. |
 |
9353 |
 |
 |
Server Side Request Forgery 04 |
< 1 Hr. |
 |
7915 |
 |
 |
Open Redirect 01 |
< 1 Hr. |
 |
8160 |
 |
 |
Open Redirect 02 |
< 1 Hr. |
 |
7898 |
 |
 |
MongoDB Injection 01 |
< 1 Hr. |
 |
8297 |
 |
 |
SAML: Introduction |
< 1 Hr. |
 |
2055 |
 |
 |
Server Side Request Forgery 02 |
< 1 Hr. |
 |
8207 |
 |
 |
Server Side Request Forgery 03 |
< 1 Hr. |
 |
8179 |
 |
 |
Server Side Request Forgery 01 |
< 1 Hr. |
 |
8349 |
 |
 |
XSS 09 |
< 1 Hr. |
 |
7398 |
 |
 |
XSS 10 |
< 1 Hr. |
 |
6875 |
 |
 |
Directory Traversal 01 |
< 1 Hr. |
 |
9759 |
 |
 |
Directory Traversal 02 |
< 1 Hr. |
 |
9602 |
 |
 |
Directory Traversal 03 |
< 1 Hr. |
 |
9504 |
 |
 |
XSS 02 |
< 1 Hr. |
 |
8690 |
 |
 |
XSS 03 |
< 1 Hr. |
 |
8397 |
 |
 |
XSS 04 |
< 1 Hr. |
 |
7983 |
 |
 |
XSS 05 |
< 1 Hr. |
 |
7769 |
 |
 |
XSS 06 |
< 1 Hr. |
 |
7736 |
 |
 |
XSS 07 |
< 1 Hr. |
 |
7608 |
 |
 |
XSS 08 |
< 1 Hr. |
 |
7498 |
 |
 |
File Upload 01 |
< 1 Hr. |
 |
7592 |
 |
 |
File Upload 02 |
< 1 Hr. |
 |
7506 |
 |
 |
XSS 01 |
< 1 Hr. |
 |
8998 |
 |
 |
Authentication 05 |
< 1 Hr. |
 |
14167 |
 |
 |
Code Execution 03 |
< 1 Hr. |
 |
10791 |
 |
 |
Code Execution 04 |
< 1 Hr. |
 |
10602 |
 |
 |
File Include 01 |
< 1 Hr. |
 |
9087 |
 |
 |
File Include 02 |
< 1 Hr. |
 |
8884 |
 |
 |
LDAP 01 |
< 1 Hr. |
 |
8807 |
 |
 |
LDAP 02 |
< 1 Hr. |
 |
8451 |
 |
 |
Authentication 04 |
< 1 Hr. |
 |
14827 |
 |
 |
Authentication 01 |
< 1 Hr. |
 |
16087 |
 |
 |
Authentication 02 |
< 1 Hr. |
 |
15541 |
 |
 |
Authentication 03 |
< 1 Hr. |
 |
15100 |
 |
 |
Authorization 01 |
< 1 Hr. |
 |
14303 |
 |
 |
Authorization 02 |
< 1 Hr. |
 |
14043 |
 |
 |
Code Execution 01 |
< 1 Hr. |
 |
12022 |
 |
 |
CVE-2016-10033: PHPMailer RCE |
< 1 Hr. |
 |
3112 |
 |
 |
Cipher block chaining |
1-2 Hr. |
 |
2406 |
 |
 |
Struts s2-045 |
< 1 Hr. |
 |
2309 |
 |
 |
CVE-2016-2098 |
< 1 Hr. |
 |
3024 |
 |
 |
CVE-2014-4511: Gitlist RCE |
-- |
 |
0 |
 |
 |
ECDSA |
2-4 Hr. |
 |
306 |
 |
 |
Werkzeug DEBUG |
< 1 Hr. |
 |
1372 |
 |
 |
Padding Oracle |
1-2 Hr. |
 |
745 |
 |
 |
Unickle |
1-2 Hr. |
 |
594 |
 |
 |
CVE-2015-3224 |
< 1 Hr. |
 |
1379 |
 |
 |
Luhn |
2-4 Hr. |
 |
542 |
 |
 |
CVE-2013-0156: Rails Object Injection |
< 1 Hr. |
 |
3462 |
 |
 |
JSON Web Token II |
1-2 Hr. |
 |
3041 |
 |
 |
CVE-2016-0792 |
< 1 Hr. |
 |
4066 |
 |
 |
ObjectInputStream |
< 1 Hr. |
 |
3714 |
 |
 |
XMLDecoder |
< 1 Hr. |
 |
4532 |
 |
 |
CVE-2014-1266 |
1-2 Hr. |
 |
1007 |
 |
 |
CVE-2011-0228 |
1-2 Hr. |
 |
1160 |
 |
 |
Intercept 03 |
< 1 Hr. |
 |
1422 |
 |
 |
Intercept 02 |
< 1 Hr. |
 |
1559 |
 |
 |
Intercept 01 |
1-2 Hr. |
 |
1717 |
 |
 |
Struts devMode |
-- |
 |
0 |
 |
 |
JSON Web Token |
< 1 Hr. |
 |
8426 |
 |
 |
Cross-Origin Resource Sharing |
-- |
 |
0 |
 |
 |
API to Shell |
2-4 Hr. |
 |
2950 |
 |
 |
Pickle Code Execution |
< 1 Hr. |
 |
5485 |
 |
 |
Play XML Entities |
1-2 Hr. |
 |
1882 |
 |
 |
CVE-2014-6271/Shellshock |
< 1 Hr. |
 |
7643 |
 |
 |
Play Session Injection |
< 1 Hr. |
 |
2383 |
 |
 |
CVE-2007-1860: mod_jk double-decoding |
1-2 Hr. |
 |
5248 |
 |
 |
XSS and MySQL FILE |
-- |
 |
0 |
 |
 |
Electronic Code Book |
1-2 Hr. |
 |
5022 |
 |
 |
Web for Pentester II |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell II |
-- |
 |
0 |
 |
 |
CVE-2012-6081: MoinMoin code execution |
-- |
 |
0 |
 |
 |
Web for Pentester |
-- |
 |
0 |
 |
 |
Axis2 Web service and Tomcat Manager |
-- |
 |
0 |
 |
 |
CVE-2008-1930: Wordpress 2.5 Cookie Integrity Protection Vulnerability |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell: PostgreSQL edition |
-- |
 |
0 |
 |
 |
Rack Cookies and Commands injection |
-- |
 |
0 |
 |
 |
Linux Host Review |
-- |
 |
0 |
 |
 |
CVE-2012-2661: ActiveRecord SQL injection |
-- |
 |
0 |
 |
 |
CVE-2012-1823: PHP CGI |
-- |
 |
0 |
 |
 |
PHP Include And Post Exploitation |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell |
< 1 Hr. |
 |
6986 |
 |
 |
Code Review 01 |
1-2 Hr. |
 |
341 |
 |
 |
Introduction 01 |
< 1 Hr. |
 |
23875 |
 |
 |
Recon 00 |
< 1 Hr. |
 |
8923 |
 |
 |
Introduction 02 |
< 1 Hr. |
 |
23598 |
 |
 |
Recon 02 |
< 1 Hr. |
 |
7354 |
 |
 |
Introduction 03 |
< 1 Hr. |
 |
23107 |
 |
 |
Recon 03 |
< 1 Hr. |
 |
6562 |
 |
 |
Introduction 00 |
< 1 Hr. |
 |
24637 |
 |
 |
Recon 10 |
< 1 Hr. |
 |
2826 |
 |
 |
Recon 09 |
< 1 Hr. |
 |
4513 |
 |
 |
Code Review 17 |
1-2 Hr. |
 |
46 |
 |
 |
Unix 00 |
< 1 Hr. |
 |
20910 |
 |
 |
Unix 01 |
< 1 Hr. |
 |
20435 |
 |
 |
Unix 02 |
< 1 Hr. |
 |
20228 |
 |
 |
Unix 03 |
< 1 Hr. |
 |
19970 |
 |
 |
Unix 04 |
< 1 Hr. |
 |
19711 |
 |
 |
Unix 05 |
< 1 Hr. |
 |
18756 |
 |
 |
Unix 06 |
< 1 Hr. |
 |
18009 |
 |
 |
Unix 07 |
< 1 Hr. |
 |
17715 |
 |
 |
Unix 08 |
< 1 Hr. |
 |
17447 |
 |
 |
Unix 09 |
< 1 Hr. |
 |
16909 |
 |
 |
Unix 10 |
< 1 Hr. |
 |
16471 |
 |
 |
PCAP 01 |
< 1 Hr. |
 |
6328 |
 |
 |
PCAP 02 |
< 1 Hr. |
 |
6173 |
 |
 |
PCAP 03 |
< 1 Hr. |
 |
6092 |
 |
 |
PCAP 04 |
< 1 Hr. |
 |
5862 |
 |
 |
PCAP 05 |
< 1 Hr. |
 |
5762 |
 |
 |
PCAP 06 |
< 1 Hr. |
 |
5675 |
 |
 |
PCAP 07 |
< 1 Hr. |
 |
5621 |
 |
 |
PCAP 08 |
< 1 Hr. |
 |
5577 |
 |
 |
PCAP 09 |
< 1 Hr. |
 |
5547 |
 |
 |
PCAP 10 |
< 1 Hr. |
 |
5256 |
 |
 |
PCAP 11 |
< 1 Hr. |
 |
5249 |
 |
 |
PCAP 12 |
< 1 Hr. |
 |
5234 |
 |
 |
PCAP 13 |
< 1 Hr. |
 |
5284 |
 |
 |
Java Snippet #01 |
< 1 Hr. |
 |
539 |
 |
 |
PCAP 14 |
< 1 Hr. |
 |
5268 |
 |
 |
Java Snippet #02 |
< 1 Hr. |
 |
472 |
 |
 |
PCAP 15 |
< 1 Hr. |
 |
5256 |
 |
 |
Java Snippet #03 |
< 1 Hr. |
 |
437 |
 |
 |
PCAP 16 |
< 1 Hr. |
 |
5232 |
 |
 |
PCAP 17 |
< 1 Hr. |
 |
5180 |
 |
 |
PCAP 18 |
< 1 Hr. |
 |
5176 |
 |
 |
PCAP 19 |
< 1 Hr. |
 |
5157 |
 |
 |
PCAP 20 |
< 1 Hr. |
 |
5058 |
 |
 |
PCAP 21 |
< 1 Hr. |
 |
5007 |
 |
 |
PCAP 22 |
< 1 Hr. |
 |
4993 |
 |
 |
PCAP 23 |
< 1 Hr. |
 |
4985 |
 |
 |
PCAP 24 |
< 1 Hr. |
 |
4974 |
 |
 |
PCAP 25 |
< 1 Hr. |
 |
4975 |
 |
 |
PCAP 26 |
< 1 Hr. |
 |
4974 |
 |
 |
PCAP 27 |
< 1 Hr. |
 |
4925 |
 |
 |
PCAP 28 |
< 1 Hr. |
 |
4903 |
 |
 |
PCAP 29 |
< 1 Hr. |
 |
4891 |
 |
 |
PCAP 30 |
< 1 Hr. |
 |
4867 |
 |
 |
PCAP 31 |
< 1 Hr. |
 |
4848 |
 |
 |
PCAP 32 |
< 1 Hr. |
 |
4780 |
 |
 |
CVE-2021-4xx50 |
< 1 Hr. |
 |
290 |
 |
 |
PCAP 33 |
< 1 Hr. |
 |
4693 |
 |
 |
PCAP 34 |
< 1 Hr. |
 |
4753 |
 |
 |
PCAP 35 |
< 1 Hr. |
 |
4817 |
 |
 |
Android 08 |
1-2 Hr. |
 |
997 |
 |
No search results found... |