⚔️
Pentest CodeX
search
⌘Ctrlk
LinkedInGithub
⚔️
Pentest CodeX
  • 🏠HOME
    • About Me
  • 🛡️PENTESTING
    • RECON
    • SERVICES
    • WEB
    • OPERATIONS
    • PRIVESC
    • ACTIVE DIRECTORY
  • ⚒️COURSES
    • CPTS
      • 01. Enumeration
      • 02. Nmap
      • 03. Active Directory Enumeration & Attacks
      • 04. Attacking Common Services
      • 05. Attacking Common Applications
      • 06. File Inclusion
      • 07. Web Attacks
        • 1. HTTP Verb Tampering
        • 2. Insecure Direct Object References (IDOR)
        • 3. XML External Entity (XXE) Injection
        • Web Attacks to the point
      • 08. Web Service & API Attacks
      • 09. Server-side Attacks
      • 10. Linux Privilege Escalation
      • 11. Windows Privilege Escalation
      • Broken Authentication
      • Command Injections
      • File Transfer
      • File Upload Attacks
      • Ligolo-ng
      • Login Brute Forcing
      • Password Attacks
      • Password Cracking
      • Pivoting, Tunneling, and Port Forwarding
      • SQL Injection
      • Session Security Guide
      • Discover environmental variables of a system to identify the shell language
      • Upgrading TTY Shell
      • Using the Metasploit Framework
      • XSS
      • Vulnerability Assessment - CPTS
      • Firewall and IDS/IPS Evasion - CPTS
      • cpts-tips
    • OSCP
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
githubEdit
  1. ⚒️COURSESchevron-right
  2. CPTS

07. Web Attacks

1. HTTP Verb Tamperingchevron-right2. Insecure Direct Object References (IDOR)chevron-right3. XML External Entity (XXE) Injectionchevron-rightWeb Attacks to the pointchevron-right
Previous9. File Inclusion Preventionchevron-leftNext1. HTTP Verb Tamperingchevron-right

Last updated 18 hours ago