 |
XSL PHP V |
< 1 Hr. |
 |
1 |
 |
 |
API Payments 07 |
< 1 Hr. |
 |
25 |
 |
 |
CVE-2021-22204: Exiftool RCE II |
< 1 Hr. |
 |
9 |
 |
 |
XSL PHP IV |
> 4 Hr. |
 |
7 |
 |
 |
API Payments 06 |
< 1 Hr. |
 |
56 |
 |
 |
CVE-2022-39224 |
2-4 Hr. |
 |
6 |
 |
 |
XSL PHP III |
< 1 Hr. |
 |
25 |
 |
 |
DOMPDF RCE II |
1-2 Hr. |
 |
4 |
 |
 |
DOMPDF RCE |
< 1 Hr. |
 |
25 |
 |
 |
API Payments 05 |
< 1 Hr. |
 |
133 |
 |
 |
XSL PHP II |
< 1 Hr. |
 |
53 |
 |
 |
API Payments 04 |
1-2 Hr. |
 |
214 |
 |
 |
XSL PHP |
< 1 Hr. |
 |
69 |
 |
 |
API Payments 03 |
< 1 Hr. |
 |
296 |
 |
 |
Code Review 18 |
1-2 Hr. |
 |
30 |
 |
 |
CVE-2020-13xxx |
< 1 Hr. |
 |
102 |
 |
 |
CVE-2022-3x7x1 |
< 1 Hr. |
 |
146 |
 |
 |
CVE-2008-5x8x |
< 1 Hr. |
 |
122 |
 |
 |
Python Snippet #02 |
< 1 Hr. |
 |
524 |
 |
 |
Java Snippet #10 |
< 1 Hr. |
 |
271 |
 |
 |
Java Snippet #11 |
< 1 Hr. |
 |
266 |
 |
 |
Java Snippet #12 |
< 1 Hr. |
 |
250 |
 |
 |
API Payments 02 |
< 1 Hr. |
 |
383 |
 |
 |
GCM Nonce Reuse |
< 1 Hr. |
 |
43 |
 |
 |
CVE-2019-5x2x |
< 1 Hr. |
 |
99 |
 |
 |
Java Snippet #07 |
< 1 Hr. |
 |
424 |
 |
 |
Java Snippet #08 |
< 1 Hr. |
 |
356 |
 |
 |
Java Snippet #09 |
< 1 Hr. |
 |
274 |
 |
 |
API Payments 01 |
< 1 Hr. |
 |
480 |
 |
 |
CVE-2022-26xx9 |
< 1 Hr. |
 |
101 |
 |
 |
Python Snippet #07 |
< 1 Hr. |
 |
376 |
 |
 |
Python Snippet #08 |
< 1 Hr. |
 |
322 |
 |
 |
Python Snippet #09 |
< 1 Hr. |
 |
368 |
 |
 |
Mongo IDOR |
< 1 Hr. |
 |
316 |
 |
 |
CVE-2008-5x8x_ii |
< 1 Hr. |
 |
109 |
 |
 |
CVE-2005-2x8x |
< 1 Hr. |
 |
113 |
 |
 |
Python Snippet #06 |
< 1 Hr. |
 |
447 |
 |
 |
Golang Snippet #01 |
< 1 Hr. |
 |
400 |
 |
 |
Java Snippet #06 |
< 1 Hr. |
 |
265 |
 |
 |
CVE-2022-21449 |
1-2 Hr. |
 |
39 |
 |
 |
CVE-2021-33564 Argument Injection in Ruby Dragonfly |
< 1 Hr. |
 |
62 |
 |
 |
CVE-2021-45xx9 |
< 1 Hr. |
 |
162 |
 |
 |
PHP Snippet #07 |
< 1 Hr. |
 |
412 |
 |
 |
PHP Snippet #08 |
< 1 Hr. |
 |
349 |
 |
 |
PHP Snippet #09 |
< 1 Hr. |
 |
350 |
 |
 |
Python Snippet #03 |
< 1 Hr. |
 |
438 |
 |
 |
Python Snippet #04 |
< 1 Hr. |
 |
397 |
 |
 |
Python Snippet #05 |
< 1 Hr. |
 |
424 |
 |
 |
CVE-2021-39x3x |
< 1 Hr. |
 |
107 |
 |
 |
CVE-2022-21724: JDBC RCE PostgreSQL |
< 1 Hr. |
 |
72 |
 |
 |
Java Snippet #04 |
< 1 Hr. |
 |
367 |
 |
 |
Java Snippet #05 |
< 1 Hr. |
 |
336 |
 |
 |
Ox Remote Code Execution II |
2-4 Hr. |
 |
11 |
 |
 |
CVE-2009-3x8x |
< 1 Hr. |
 |
144 |
 |
 |
HTTP 41 |
< 1 Hr. |
 |
1119 |
 |
 |
HTTP 42 |
< 1 Hr. |
 |
1135 |
 |
 |
HTTP 43 |
< 1 Hr. |
 |
1087 |
 |
 |
CVE-2021-381xx |
< 1 Hr. |
 |
137 |
 |
 |
H2 RCE |
< 1 Hr. |
 |
38 |
 |
 |
TypeScript Snippet #04 |
< 1 Hr. |
 |
244 |
 |
 |
TypeScript Snippet #05 |
< 1 Hr. |
 |
272 |
 |
 |
TypeScript Snippet #06 |
< 1 Hr. |
 |
215 |
 |
 |
TypeScript Snippet #07 |
< 1 Hr. |
 |
191 |
 |
 |
TypeScript Snippet #08 |
< 1 Hr. |
 |
220 |
 |
 |
TypeScript Snippet #09 |
< 1 Hr. |
 |
240 |
 |
 |
CVE-2008-4x9x |
< 1 Hr. |
 |
136 |
 |
 |
Log4j RCE II |
1-2 Hr. |
 |
84 |
 |
 |
Log4j RCE |
1-2 Hr. |
 |
210 |
 |
 |
CVE-2021-4379x |
< 1 Hr. |
 |
211 |
 |
 |
API 08 |
< 1 Hr. |
 |
564 |
 |
 |
JDBC RCE |
2-4 Hr. |
 |
31 |
 |
 |
CVE-2008-1x3x |
< 1 Hr. |
 |
192 |
 |
 |
Golang Snippet #12 |
< 1 Hr. |
 |
259 |
 |
 |
TypeScript Snippet #01 |
< 1 Hr. |
 |
361 |
 |
 |
TypeScript Snippet #02 |
< 1 Hr. |
 |
327 |
 |
 |
TypeScript Snippet #03 |
< 1 Hr. |
 |
321 |
 |
 |
API 07 |
< 1 Hr. |
 |
619 |
 |
 |
CVE-2021-40438 |
< 1 Hr. |
 |
171 |
 |
 |
CVE-2021-41773 |
< 1 Hr. |
 |
301 |
 |
 |
CVE-2021-41773 II |
1-2 Hr. |
 |
87 |
 |
 |
HTTP 36 |
< 1 Hr. |
 |
1304 |
 |
 |
HTTP 37 |
< 1 Hr. |
 |
1286 |
 |
 |
HTTP 38 |
< 1 Hr. |
 |
1291 |
 |
 |
HTTP 39 |
< 1 Hr. |
 |
1275 |
 |
 |
HTTP 40 |
< 1 Hr. |
 |
1291 |
 |
 |
CVE-2006-4xxx |
< 1 Hr. |
 |
212 |
 |
 |
CVE-2006-4xxx_ii |
< 1 Hr. |
 |
154 |
 |
 |
PHP Snippet #04 |
< 1 Hr. |
 |
551 |
 |
 |
PHP Snippet #05 |
< 1 Hr. |
 |
499 |
 |
 |
PHP Snippet #06 |
< 1 Hr. |
 |
551 |
 |
 |
API 06 |
< 1 Hr. |
 |
699 |
 |
 |
CVE-2021-37xxx |
< 1 Hr. |
 |
157 |
 |
 |
PHP Snippet #01 |
< 1 Hr. |
 |
890 |
 |
 |
PHP Snippet #02 |
< 1 Hr. |
 |
737 |
 |
 |
PHP Snippet #03 |
< 1 Hr. |
 |
576 |
 |
 |
HTTP 31 |
< 1 Hr. |
 |
1389 |
 |
 |
HTTP 32 |
< 1 Hr. |
 |
1375 |
 |
 |
HTTP 35 |
< 1 Hr. |
 |
1340 |
 |
 |
HTTP 34 |
< 1 Hr. |
 |
1347 |
 |
 |
HTTP 33 |
< 1 Hr. |
 |
1368 |
 |
 |
API 05 |
< 1 Hr. |
 |
866 |
 |
 |
API 04 |
< 1 Hr. |
 |
913 |
 |
 |
Golang Snippet #02 |
< 1 Hr. |
 |
432 |
 |
 |
Golang Snippet #03 |
< 1 Hr. |
 |
343 |
 |
 |
Golang Snippet #04 |
< 1 Hr. |
 |
407 |
 |
 |
Golang Snippet #05 |
< 1 Hr. |
 |
370 |
 |
 |
Golang Snippet #06 |
< 1 Hr. |
 |
305 |
 |
 |
Golang Snippet #07 |
< 1 Hr. |
 |
330 |
 |
 |
Golang Snippet #08 |
< 1 Hr. |
 |
303 |
 |
 |
Golang Snippet #09 |
< 1 Hr. |
 |
291 |
 |
 |
Golang Snippet #10 |
< 1 Hr. |
 |
305 |
 |
 |
Golang Snippet #11 |
< 1 Hr. |
 |
298 |
 |
 |
Javascript Snippet #01 |
< 1 Hr. |
 |
721 |
 |
 |
Javascript Snippet #02 |
< 1 Hr. |
 |
564 |
 |
 |
Javascript Snippet #03 |
< 1 Hr. |
 |
572 |
 |
 |
Javascript Snippet #04 |
< 1 Hr. |
 |
523 |
 |
 |
Javascript Snippet #05 |
< 1 Hr. |
 |
539 |
 |
 |
Javascript Snippet #06 |
< 1 Hr. |
 |
483 |
 |
 |
Javascript Snippet #07 |
< 1 Hr. |
 |
495 |
 |
 |
Python Snippet #01 |
< 1 Hr. |
 |
716 |
 |
 |
Ruby Snippet #01 |
1-2 Hr. |
 |
206 |
 |
 |
Ruby Snippet #02 |
< 1 Hr. |
 |
225 |
 |
 |
Ruby Snippet #03 |
< 1 Hr. |
 |
248 |
 |
 |
Ruby Snippet #04 |
< 1 Hr. |
 |
222 |
 |
 |
Ruby Snippet #05 |
< 1 Hr. |
 |
238 |
 |
 |
Ruby Snippet #06 |
< 1 Hr. |
 |
226 |
 |
 |
Ruby Snippet #07 |
< 1 Hr. |
 |
189 |
 |
 |
Ruby Snippet #08 |
< 1 Hr. |
 |
209 |
 |
 |
Ruby Snippet #09 |
< 1 Hr. |
 |
196 |
 |
 |
HTTP 26 |
< 1 Hr. |
 |
1529 |
 |
 |
HTTP 27 |
< 1 Hr. |
 |
1502 |
 |
 |
HTTP 28 |
< 1 Hr. |
 |
1475 |
 |
 |
HTTP 29 |
< 1 Hr. |
 |
1435 |
 |
 |
HTTP 30 |
< 1 Hr. |
 |
1398 |
 |
 |
CVE-2020-17xx7 |
< 1 Hr. |
 |
264 |
 |
 |
Ox Remote Code Execution |
2-4 Hr. |
 |
20 |
 |
 |
CVE-2020-9x9x |
< 1 Hr. |
 |
201 |
 |
 |
HTTP 21 |
< 1 Hr. |
 |
1629 |
 |
 |
HTTP 22 |
< 1 Hr. |
 |
1606 |
 |
 |
HTTP 23 |
< 1 Hr. |
 |
1580 |
 |
 |
HTTP 24 |
< 1 Hr. |
 |
1577 |
 |
 |
HTTP 25 |
< 1 Hr. |
 |
1573 |
 |
 |
HTTP 16 |
< 1 Hr. |
 |
1706 |
 |
 |
HTTP 20 |
< 1 Hr. |
 |
1638 |
 |
 |
HTTP 18 |
< 1 Hr. |
 |
1684 |
 |
 |
HTTP 19 |
< 1 Hr. |
 |
1657 |
 |
 |
HTTP 17 |
< 1 Hr. |
 |
1694 |
 |
 |
CVE-2020-17xx8 |
< 1 Hr. |
 |
185 |
 |
 |
CVE-2021-22204: Exiftool RCE |
1-2 Hr. |
 |
103 |
 |
 |
SSRF via FFMPEG II |
1-2 Hr. |
 |
82 |
 |
 |
API 03 |
< 1 Hr. |
 |
910 |
 |
 |
CVE-2020-11xxx |
< 1 Hr. |
 |
202 |
 |
 |
OAuth2: Authorization Server XSS II |
< 1 Hr. |
 |
169 |
 |
 |
HTTP 11 |
< 1 Hr. |
 |
1844 |
 |
 |
HTTP 15 |
< 1 Hr. |
 |
1778 |
 |
 |
HTTP 12 |
< 1 Hr. |
 |
1830 |
 |
 |
HTTP 13 |
< 1 Hr. |
 |
1799 |
 |
 |
HTTP 14 |
< 1 Hr. |
 |
1782 |
 |
 |
API 02 |
< 1 Hr. |
 |
1346 |
 |
 |
Express Local File Read |
< 1 Hr. |
 |
199 |
 |
 |
OAuth2: Authorization Server XSS |
< 1 Hr. |
 |
218 |
 |
 |
HTTP 10 |
< 1 Hr. |
 |
1922 |
 |
 |
HTTP 09 |
< 1 Hr. |
 |
1957 |
 |
 |
HTTP 07 |
< 1 Hr. |
 |
2053 |
 |
 |
HTTP 06 |
< 1 Hr. |
 |
2070 |
 |
 |
HTTP 08 |
< 1 Hr. |
 |
1988 |
 |
 |
HTTP 03 |
< 1 Hr. |
 |
2277 |
 |
 |
HTTP 04 |
< 1 Hr. |
 |
2210 |
 |
 |
HTTP 05 |
< 1 Hr. |
 |
2170 |
 |
 |
HTTP 02 |
< 1 Hr. |
 |
2367 |
 |
 |
HTTP 01 |
< 1 Hr. |
 |
2527 |
 |
 |
API 01 |
< 1 Hr. |
 |
1690 |
 |
 |
JSON Web Token XIII |
< 1 Hr. |
 |
83 |
 |
 |
SAML: Comment Injection II |
< 1 Hr. |
 |
329 |
 |
 |
Recon 24 |
< 1 Hr. |
 |
2082 |
 |
 |
Recon 25 |
1-2 Hr. |
 |
1288 |
 |
 |
Recon 26 |
< 1 Hr. |
 |
2076 |
 |
 |
SSRF via FFMPEG |
1-2 Hr. |
 |
165 |
 |
 |
SAML: Signature Wrapping II |
< 1 Hr. |
 |
245 |
 |
 |
RCE via argument injection |
2-4 Hr. |
 |
24 |
 |
 |
Code Review 16 |
< 1 Hr. |
 |
96 |
 |
 |
SAML: Signature Wrapping |
< 1 Hr. |
 |
323 |
 |
 |
Recon 20 |
< 1 Hr. |
 |
2270 |
 |
 |
Recon 21 |
< 1 Hr. |
 |
2232 |
 |
 |
Recon 22 |
< 1 Hr. |
 |
2102 |
 |
 |
Recon 23 |
< 1 Hr. |
 |
2117 |
 |
 |
SAML: SAMLResponse forwarding |
< 1 Hr. |
 |
284 |
 |
 |
CGI and Signature |
< 1 Hr. |
 |
119 |
 |
 |
Recon 17 |
< 1 Hr. |
 |
2428 |
 |
 |
Recon 18 |
< 1 Hr. |
 |
2302 |
 |
 |
Recon 19 |
< 1 Hr. |
 |
2128 |
 |
 |
Code Review 15 |
< 1 Hr. |
 |
97 |
 |
 |
Code Review 14 |
< 1 Hr. |
 |
103 |
 |
 |
CVE-2020-14343: PyYAML unsafe loader |
< 1 Hr. |
 |
185 |
 |
 |
OAuth2: State Fixation |
1-2 Hr. |
 |
259 |
 |
 |
Code Review 13 |
2-4 Hr. |
 |
70 |
 |
 |
CVE-2020-7115: Aruba Clearpass RCE |
1-2 Hr. |
 |
124 |
 |
 |
Code Review 12 |
< 1 Hr. |
 |
141 |
 |
 |
OAuth2: Predictable State II |
1-2 Hr. |
 |
177 |
 |
 |
Recon 13 |
< 1 Hr. |
 |
2941 |
 |
 |
Recon 14 |
< 1 Hr. |
 |
2672 |
 |
 |
Recon 15 |
< 1 Hr. |
 |
2273 |
 |
 |
Recon 16 |
< 1 Hr. |
 |
2478 |
 |
 |
EDDSA vulnerability in Monocypher |
1-2 Hr. |
 |
79 |
 |
 |
Code Review 11 |
2-4 Hr. |
 |
42 |
 |
 |
OAuth2: Predictable State |
2-4 Hr. |
 |
195 |
 |
 |
Code Review 10 |
< 1 Hr. |
 |
106 |
 |
 |
Recon 11 |
< 1 Hr. |
 |
2568 |
 |
 |
Recon 12 |
< 1 Hr. |
 |
2953 |
 |
 |
Unicode and NFKC |
< 1 Hr. |
 |
184 |
 |
 |
SAML: Trusted Embedded Key |
< 1 Hr. |
 |
301 |
 |
 |
Recon 06 |
< 1 Hr. |
 |
5054 |
 |
 |
Recon 07 |
< 1 Hr. |
 |
4470 |
 |
 |
Recon 08 |
< 1 Hr. |
 |
4004 |
 |
 |
CVE-2020-8163: Rails local name RCE |
2-4 Hr. |
 |
151 |
 |
 |
SAML: Known Key |
1-2 Hr. |
 |
294 |
 |
 |
Code Review 09 |
1-2 Hr. |
 |
78 |
 |
 |
Recon 04 |
< 1 Hr. |
 |
6744 |
 |
 |
Recon 05 |
< 1 Hr. |
 |
5087 |
 |
 |
Recon 01 |
< 1 Hr. |
 |
8925 |
 |
 |
OAuth2: Client Server XSS |
1-2 Hr. |
 |
248 |
 |
 |
Zip symlink |
< 1 Hr. |
 |
407 |
 |
 |
Code Review 08 |
1-2 Hr. |
 |
96 |
 |
 |
SAML: Comment Injection |
< 1 Hr. |
 |
1112 |
 |
 |
Unicode and Downcase |
< 1 Hr. |
 |
424 |
 |
 |
Code Review 07 |
1-2 Hr. |
 |
104 |
 |
 |
Java Serialize 01 |
< 1 Hr. |
 |
247 |
 |
 |
Unicode and Uppercase |
< 1 Hr. |
 |
480 |
 |
 |
Code Review 06 |
2-4 Hr. |
 |
49 |
 |
 |
Cross-Site Leak |
2-4 Hr. |
 |
440 |
 |
 |
From SQL injection to Shell III: PostgreSQL Edition |
2-4 Hr. |
 |
121 |
 |
 |
OAuth2: Client CSRF II |
2-4 Hr. |
 |
355 |
 |
 |
XSS Include |
< 1 Hr. |
 |
1005 |
 |
 |
OAuth2: Client CSRF |
< 1 Hr. |
 |
734 |
 |
 |
Code Review 05 |
2-4 Hr. |
 |
80 |
 |
 |
Code Review 04 |
1-2 Hr. |
 |
179 |
 |
 |
JS Prototype Pollution |
< 1 Hr. |
 |
641 |
 |
 |
OAuth2: Authorization Server CSRF |
1-2 Hr. |
 |
857 |
 |
 |
Code Review 03 |
2-4 Hr. |
 |
92 |
 |
 |
SSRF in PDF generation |
< 1 Hr. |
 |
663 |
 |
 |
OAuth2: Github HTTP HEAD |
1-2 Hr. |
 |
353 |
 |
 |
SVG XSS |
< 1 Hr. |
 |
1358 |
 |
 |
Apache Pluto RCE |
< 1 Hr. |
 |
391 |
 |
 |
JSON Cross-Site Request Forgery |
< 1 Hr. |
 |
1177 |
 |
 |
Cross-Site Request Forgery |
< 1 Hr. |
 |
1284 |
 |
 |
Code Review 02 |
1-2 Hr. |
 |
216 |
 |
 |
postMessage() IV |
< 1 Hr. |
 |
742 |
 |
 |
Spring Actuators |
1-2 Hr. |
 |
207 |
 |
 |
postMessage() III |
1-2 Hr. |
 |
757 |
 |
 |
postMessage() II |
< 1 Hr. |
 |
839 |
 |
 |
PHP phar:// |
< 1 Hr. |
 |
257 |
 |
 |
Signing Oracle |
< 1 Hr. |
 |
602 |
 |
 |
Length Extension Attack |
1-2 Hr. |
 |
532 |
 |
 |
JSON Web Encryption |
< 1 Hr. |
 |
385 |
 |
 |
postMessage() |
< 1 Hr. |
 |
947 |
 |
 |
CVE-2019-5418 |
1-2 Hr. |
 |
363 |
 |
 |
Cross-Site WebSocket Hijacking |
< 1 Hr. |
 |
870 |
 |
 |
JWT XII |
1-2 Hr. |
 |
492 |
 |
 |
Cross-Origin Resource Sharing II |
< 1 Hr. |
 |
816 |
 |
 |
JWT XI |
1-2 Hr. |
 |
489 |
 |
 |
cve-2019-5420 II |
1-2 Hr. |
 |
408 |
 |
 |
OAuth2: Client OpenRedirect |
< 1 Hr. |
 |
663 |
 |
 |
CVE-2019-5420 |
2-4 Hr. |
 |
647 |
 |
 |
JWT X |
< 1 Hr. |
 |
558 |
 |
 |
GraphQL: SQL Injection |
1-2 Hr. |
 |
994 |
 |
 |
OAuth2: Authorization Server OpenRedirect |
< 1 Hr. |
 |
759 |
 |
 |
JWT IX |
< 1 Hr. |
 |
646 |
 |
 |
Gogs RCE II |
< 1 Hr. |
 |
435 |
 |
 |
JWT VIII |
1-2 Hr. |
 |
693 |
 |
 |
SAML: Signature Stripping |
< 1 Hr. |
 |
1484 |
 |
 |
GraphQL Introspection |
< 1 Hr. |
 |
1731 |
 |
 |
Gogs RCE |
1-2 Hr. |
 |
492 |
 |
 |
Android 07 |
1-2 Hr. |
 |
1054 |
 |
 |
Android 06 |
1-2 Hr. |
 |
1232 |
 |
 |
Android 05 |
1-2 Hr. |
 |
1470 |
 |
 |
Ruby 2.x Universal RCE Deserialization Gadget Chain |
< 1 Hr. |
 |
1068 |
 |
 |
CVE-2018-10933: LibSSH auth bypass |
-- |
 |
0 |
 |
 |
Android 04 |
< 1 Hr. |
 |
1881 |
 |
 |
Android 03 |
< 1 Hr. |
 |
2555 |
 |
 |
From SQL injection to Shell III |
1-2 Hr. |
 |
824 |
 |
 |
Android 02 |
< 1 Hr. |
 |
2785 |
 |
 |
IDOR to Shell |
1-2 Hr. |
 |
776 |
 |
 |
Android 01 |
< 1 Hr. |
 |
2976 |
 |
 |
Introduction to CSP |
< 1 Hr. |
 |
2037 |
 |
 |
CVE-2018-11235: Git Submodule RCE |
2-4 Hr. |
 |
404 |
 |
 |
Git Information Leak II |
< 1 Hr. |
 |
2044 |
 |
 |
Git Information Leak |
< 1 Hr. |
 |
2710 |
 |
 |
JWT VII |
< 1 Hr. |
 |
2594 |
 |
 |
CVE-2016-5386: HTTPoxy/Golang HTTProxy namespace conflict |
< 1 Hr. |
 |
726 |
 |
 |
Unix 31 |
< 1 Hr. |
 |
11611 |
 |
 |
Unix 30 |
< 1 Hr. |
 |
11647 |
 |
 |
Unix 25 |
< 1 Hr. |
 |
12188 |
 |
 |
Unix 32 |
< 1 Hr. |
 |
11597 |
 |
 |
Unix 34 |
< 1 Hr. |
 |
11543 |
 |
 |
Unix 33 |
< 1 Hr. |
 |
11575 |
 |
 |
Unix 27 |
< 1 Hr. |
 |
12039 |
 |
 |
Unix 29 |
< 1 Hr. |
 |
11975 |
 |
 |
Unix 28 |
< 1 Hr. |
 |
11993 |
 |
 |
Unix 26 |
< 1 Hr. |
 |
12109 |
 |
 |
CBC-MAC II |
1-2 Hr. |
 |
1371 |
 |
 |
JWT VI |
< 1 Hr. |
 |
1995 |
 |
 |
CVE-2018-6574: go get RCE |
< 1 Hr. |
 |
710 |
 |
 |
Unix 11 |
< 1 Hr. |
 |
16136 |
 |
 |
Unix 12 |
< 1 Hr. |
 |
15708 |
 |
 |
Unix 13 |
< 1 Hr. |
 |
15044 |
 |
 |
Unix 14 |
< 1 Hr. |
 |
14697 |
 |
 |
Unix 15 |
< 1 Hr. |
 |
13455 |
 |
 |
Unix 16 |
< 1 Hr. |
 |
13168 |
 |
 |
Unix 17 |
< 1 Hr. |
 |
13378 |
 |
 |
Unix 18 |
< 1 Hr. |
 |
13313 |
 |
 |
Unix 19 |
< 1 Hr. |
 |
13231 |
 |
 |
Unix 20 |
< 1 Hr. |
 |
12430 |
 |
 |
Unix 21 |
< 1 Hr. |
 |
12573 |
 |
 |
Unix 22 |
< 1 Hr. |
 |
12453 |
 |
 |
Unix 23 |
< 1 Hr. |
 |
12258 |
 |
 |
Unix 24 |
< 1 Hr. |
 |
12195 |
 |
 |
JWT V |
< 1 Hr. |
 |
2392 |
 |
 |
CVE-2018-0114 |
2-4 Hr. |
 |
1453 |
 |
 |
JWT IV |
< 1 Hr. |
 |
2119 |
 |
 |
CBC-MAC |
1-2 Hr. |
 |
1333 |
 |
 |
JWT III |
1-2 Hr. |
 |
2268 |
 |
 |
Code Execution 09 |
< 1 Hr. |
 |
8866 |
 |
 |
Server Side Template Injection 02 |
< 1 Hr. |
 |
6961 |
 |
 |
MongoDB Injection 02 |
1-2 Hr. |
 |
6991 |
 |
 |
Authorization 06 |
< 1 Hr. |
 |
11978 |
 |
 |
Code Execution 08 |
< 1 Hr. |
 |
8973 |
 |
 |
Authorization 04 |
< 1 Hr. |
 |
12942 |
 |
 |
Authorization 05 |
< 1 Hr. |
 |
12480 |
 |
 |
Command Execution 03 |
< 1 Hr. |
 |
9222 |
 |
 |
Server Side Template Injection 01 |
< 1 Hr. |
 |
6956 |
 |
 |
Code Execution 05 |
< 1 Hr. |
 |
10232 |
 |
 |
Code Execution 06 |
< 1 Hr. |
 |
10015 |
 |
 |
Code Execution 07 |
< 1 Hr. |
 |
9799 |
 |
 |
Introduction to code review |
-- |
 |
0 |
 |
 |
S2-052 |
< 1 Hr. |
 |
2071 |
 |
 |
SQL Injection 06 |
< 1 Hr. |
 |
7562 |
 |
 |
XML Attacks 01 |
< 1 Hr. |
 |
7354 |
 |
 |
XML Attacks 02 |
< 1 Hr. |
 |
6987 |
 |
 |
SQL Injection 04 |
< 1 Hr. |
 |
8001 |
 |
 |
SQL Injection 05 |
< 1 Hr. |
 |
7933 |
 |
 |
SQL Injection 01 |
< 1 Hr. |
 |
8848 |
 |
 |
SQL Injection 02 |
< 1 Hr. |
 |
8568 |
 |
 |
SQL Injection 03 |
< 1 Hr. |
 |
8365 |
 |
 |
Code Execution 02 |
< 1 Hr. |
 |
11314 |
 |
 |
Authorization 03 |
< 1 Hr. |
 |
13809 |
 |
 |
Command Execution 01 |
< 1 Hr. |
 |
9615 |
 |
 |
Command Execution 02 |
< 1 Hr. |
 |
9333 |
 |
 |
Server Side Request Forgery 04 |
< 1 Hr. |
 |
7891 |
 |
 |
Open Redirect 01 |
< 1 Hr. |
 |
8134 |
 |
 |
Open Redirect 02 |
< 1 Hr. |
 |
7876 |
 |
 |
MongoDB Injection 01 |
< 1 Hr. |
 |
8270 |
 |
 |
SAML: Introduction |
< 1 Hr. |
 |
2047 |
 |
 |
Server Side Request Forgery 02 |
< 1 Hr. |
 |
8180 |
 |
 |
Server Side Request Forgery 03 |
< 1 Hr. |
 |
8153 |
 |
 |
Server Side Request Forgery 01 |
< 1 Hr. |
 |
8324 |
 |
 |
XSS 09 |
< 1 Hr. |
 |
7379 |
 |
 |
XSS 10 |
< 1 Hr. |
 |
6859 |
 |
 |
Directory Traversal 01 |
< 1 Hr. |
 |
9732 |
 |
 |
Directory Traversal 02 |
< 1 Hr. |
 |
9578 |
 |
 |
Directory Traversal 03 |
< 1 Hr. |
 |
9480 |
 |
 |
XSS 02 |
< 1 Hr. |
 |
8664 |
 |
 |
XSS 03 |
< 1 Hr. |
 |
8374 |
 |
 |
XSS 04 |
< 1 Hr. |
 |
7960 |
 |
 |
XSS 05 |
< 1 Hr. |
 |
7744 |
 |
 |
XSS 06 |
< 1 Hr. |
 |
7713 |
 |
 |
XSS 07 |
< 1 Hr. |
 |
7587 |
 |
 |
XSS 08 |
< 1 Hr. |
 |
7477 |
 |
 |
File Upload 01 |
< 1 Hr. |
 |
7575 |
 |
 |
File Upload 02 |
< 1 Hr. |
 |
7489 |
 |
 |
XSS 01 |
< 1 Hr. |
 |
8976 |
 |
 |
Authentication 05 |
< 1 Hr. |
 |
14133 |
 |
 |
Code Execution 03 |
< 1 Hr. |
 |
10767 |
 |
 |
Code Execution 04 |
< 1 Hr. |
 |
10577 |
 |
 |
File Include 01 |
< 1 Hr. |
 |
9061 |
 |
 |
File Include 02 |
< 1 Hr. |
 |
8860 |
 |
 |
LDAP 01 |
< 1 Hr. |
 |
8781 |
 |
 |
LDAP 02 |
< 1 Hr. |
 |
8426 |
 |
 |
Authentication 04 |
< 1 Hr. |
 |
14788 |
 |
 |
Authentication 01 |
< 1 Hr. |
 |
16042 |
 |
 |
Authentication 02 |
< 1 Hr. |
 |
15497 |
 |
 |
Authentication 03 |
< 1 Hr. |
 |
15056 |
 |
 |
Authorization 01 |
< 1 Hr. |
 |
14274 |
 |
 |
Authorization 02 |
< 1 Hr. |
 |
14013 |
 |
 |
Code Execution 01 |
< 1 Hr. |
 |
11996 |
 |
 |
CVE-2016-10033: PHPMailer RCE |
< 1 Hr. |
 |
3106 |
 |
 |
Cipher block chaining |
1-2 Hr. |
 |
2400 |
 |
 |
Struts s2-045 |
< 1 Hr. |
 |
2306 |
 |
 |
CVE-2016-2098 |
< 1 Hr. |
 |
3014 |
 |
 |
CVE-2014-4511: Gitlist RCE |
-- |
 |
0 |
 |
 |
ECDSA |
2-4 Hr. |
 |
306 |
 |
 |
Werkzeug DEBUG |
< 1 Hr. |
 |
1372 |
 |
 |
Padding Oracle |
1-2 Hr. |
 |
745 |
 |
 |
Unickle |
1-2 Hr. |
 |
594 |
 |
 |
CVE-2015-3224 |
< 1 Hr. |
 |
1379 |
 |
 |
Luhn |
2-4 Hr. |
 |
542 |
 |
 |
CVE-2013-0156: Rails Object Injection |
< 1 Hr. |
 |
3452 |
 |
 |
JSON Web Token II |
1-2 Hr. |
 |
3028 |
 |
 |
CVE-2016-0792 |
< 1 Hr. |
 |
4055 |
 |
 |
ObjectInputStream |
< 1 Hr. |
 |
3704 |
 |
 |
XMLDecoder |
< 1 Hr. |
 |
4524 |
 |
 |
CVE-2014-1266 |
1-2 Hr. |
 |
1006 |
 |
 |
CVE-2011-0228 |
1-2 Hr. |
 |
1159 |
 |
 |
Intercept 03 |
< 1 Hr. |
 |
1421 |
 |
 |
Intercept 02 |
< 1 Hr. |
 |
1558 |
 |
 |
Intercept 01 |
1-2 Hr. |
 |
1714 |
 |
 |
Struts devMode |
-- |
 |
0 |
 |
 |
JSON Web Token |
< 1 Hr. |
 |
8404 |
 |
 |
Cross-Origin Resource Sharing |
-- |
 |
0 |
 |
 |
API to Shell |
2-4 Hr. |
 |
2942 |
 |
 |
Pickle Code Execution |
< 1 Hr. |
 |
5473 |
 |
 |
Play XML Entities |
1-2 Hr. |
 |
1876 |
 |
 |
CVE-2014-6271/Shellshock |
< 1 Hr. |
 |
7630 |
 |
 |
Play Session Injection |
< 1 Hr. |
 |
2375 |
 |
 |
CVE-2007-1860: mod_jk double-decoding |
1-2 Hr. |
 |
5236 |
 |
 |
XSS and MySQL FILE |
-- |
 |
0 |
 |
 |
Electronic Code Book |
1-2 Hr. |
 |
5010 |
 |
 |
Web for Pentester II |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell II |
-- |
 |
0 |
 |
 |
CVE-2012-6081: MoinMoin code execution |
-- |
 |
0 |
 |
 |
Web for Pentester |
-- |
 |
0 |
 |
 |
Axis2 Web service and Tomcat Manager |
-- |
 |
0 |
 |
 |
CVE-2008-1930: Wordpress 2.5 Cookie Integrity Protection Vulnerability |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell: PostgreSQL edition |
-- |
 |
0 |
 |
 |
Rack Cookies and Commands injection |
-- |
 |
0 |
 |
 |
Linux Host Review |
-- |
 |
0 |
 |
 |
CVE-2012-2661: ActiveRecord SQL injection |
-- |
 |
0 |
 |
 |
CVE-2012-1823: PHP CGI |
-- |
 |
0 |
 |
 |
PHP Include And Post Exploitation |
-- |
 |
0 |
 |
 |
From SQL Injection to Shell |
< 1 Hr. |
 |
6974 |
 |
 |
Code Review 01 |
1-2 Hr. |
 |
340 |
 |
 |
Introduction 01 |
< 1 Hr. |
 |
23807 |
 |
 |
Recon 00 |
< 1 Hr. |
 |
8884 |
 |
 |
Introduction 02 |
< 1 Hr. |
 |
23533 |
 |
 |
Recon 02 |
< 1 Hr. |
 |
7327 |
 |
 |
Introduction 03 |
< 1 Hr. |
 |
23045 |
 |
 |
Recon 03 |
< 1 Hr. |
 |
6534 |
 |
 |
Introduction 00 |
< 1 Hr. |
 |
24570 |
 |
 |
Recon 10 |
< 1 Hr. |
 |
2815 |
 |
 |
Recon 09 |
< 1 Hr. |
 |
4492 |
 |
 |
Code Review 17 |
1-2 Hr. |
 |
46 |
 |
 |
Unix 00 |
< 1 Hr. |
 |
20845 |
 |
 |
Unix 01 |
< 1 Hr. |
 |
20370 |
 |
 |
Unix 02 |
< 1 Hr. |
 |
20163 |
 |
 |
Unix 03 |
< 1 Hr. |
 |
19909 |
 |
 |
Unix 04 |
< 1 Hr. |
 |
19653 |
 |
 |
Unix 05 |
< 1 Hr. |
 |
18708 |
 |
 |
Unix 06 |
< 1 Hr. |
 |
17965 |
 |
 |
Unix 07 |
< 1 Hr. |
 |
17672 |
 |
 |
Unix 08 |
< 1 Hr. |
 |
17407 |
 |
 |
Unix 09 |
< 1 Hr. |
 |
16875 |
 |
 |
Unix 10 |
< 1 Hr. |
 |
16433 |
 |
 |
PCAP 01 |
< 1 Hr. |
 |
6321 |
 |
 |
PCAP 02 |
< 1 Hr. |
 |
6166 |
 |
 |
PCAP 03 |
< 1 Hr. |
 |
6085 |
 |
 |
PCAP 04 |
< 1 Hr. |
 |
5856 |
 |
 |
PCAP 05 |
< 1 Hr. |
 |
5757 |
 |
 |
PCAP 06 |
< 1 Hr. |
 |
5670 |
 |
 |
PCAP 07 |
< 1 Hr. |
 |
5616 |
 |
 |
PCAP 08 |
< 1 Hr. |
 |
5572 |
 |
 |
PCAP 09 |
< 1 Hr. |
 |
5543 |
 |
 |
PCAP 10 |
< 1 Hr. |
 |
5252 |
 |
 |
PCAP 11 |
< 1 Hr. |
 |
5245 |
 |
 |
PCAP 12 |
< 1 Hr. |
 |
5230 |
 |
 |
PCAP 13 |
< 1 Hr. |
 |
5280 |
 |
 |
Java Snippet #01 |
< 1 Hr. |
 |
530 |
 |
 |
PCAP 14 |
< 1 Hr. |
 |
5263 |
 |
 |
Java Snippet #02 |
< 1 Hr. |
 |
465 |
 |
 |
PCAP 15 |
< 1 Hr. |
 |
5251 |
 |
 |
Java Snippet #03 |
< 1 Hr. |
 |
431 |
 |
 |
PCAP 16 |
< 1 Hr. |
 |
5227 |
 |
 |
PCAP 17 |
< 1 Hr. |
 |
5175 |
 |
 |
PCAP 18 |
< 1 Hr. |
 |
5171 |
 |
 |
PCAP 19 |
< 1 Hr. |
 |
5152 |
 |
 |
PCAP 20 |
< 1 Hr. |
 |
5052 |
 |
 |
PCAP 21 |
< 1 Hr. |
 |
5000 |
 |
 |
PCAP 22 |
< 1 Hr. |
 |
4985 |
 |
 |
PCAP 23 |
< 1 Hr. |
 |
4978 |
 |
 |
PCAP 24 |
< 1 Hr. |
 |
4967 |
 |
 |
PCAP 25 |
< 1 Hr. |
 |
4968 |
 |
 |
PCAP 26 |
< 1 Hr. |
 |
4968 |
 |
 |
PCAP 27 |
< 1 Hr. |
 |
4919 |
 |
 |
PCAP 28 |
< 1 Hr. |
 |
4897 |
 |
 |
PCAP 29 |
< 1 Hr. |
 |
4885 |
 |
 |
PCAP 30 |
< 1 Hr. |
 |
4860 |
 |
 |
PCAP 31 |
< 1 Hr. |
 |
4842 |
 |
 |
PCAP 32 |
< 1 Hr. |
 |
4774 |
 |
 |
CVE-2021-4xx50 |
< 1 Hr. |
 |
289 |
 |
 |
PCAP 33 |
< 1 Hr. |
 |
4686 |
 |
 |
PCAP 34 |
< 1 Hr. |
 |
4746 |
 |
 |
PCAP 35 |
< 1 Hr. |
 |
4810 |
 |
 |
Android 08 |
1-2 Hr. |
 |
996 |
 |
No search results found... |