unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Rss
黑夜模式
Introducing DAST scanning in the Cloud, with Burp Suite Enterprise Edition
Mike Eaton |18 April 2024 at 13:5...
2024-4-18 21:56:40 | 阅读: 15 |
收藏
|
PortSwigger Blog - portswigger.net
security
burp
cloud
dast
attacker
Making Desync attacks easy with TRACE
Published: 19 March 2024 at 14:00 UTC...
2024-3-19 22:0:0 | 阅读: 22 |
收藏
|
PortSwigger Research - portswigger.net
payload
desync
proxy
smuggled
attacker
Using form hijacking to bypass CSP
Published: 05 March 2024 at 14:55 UTC...
2024-3-5 22:55:0 | 阅读: 16 |
收藏
|
PortSwigger Research - portswigger.net
security
directive
ancestors
hijacking
allowlisted
Top 10 web hacking techniques of 2023
Published: 19 February 2024 at 14:31 UTC...
2024-2-19 22:31:12 | 阅读: 15 |
收藏
|
PortSwigger Research - portswigger.net
php
security
splitting
ten
innovative
What's new with BChecks?
Mike Eaton |08 February 2024 at 0...
2024-2-8 17:5:48 | 阅读: 21 |
收藏
|
PortSwigger Blog - portswigger.net
bchecks
repository
github
bcheck
burp
Introducing custom scan checks to Burp Suite Enterprise Edition
Emma Stocks |02 February 2024 at...
2024-2-2 19:26:42 | 阅读: 19 |
收藏
|
PortSwigger Blog - portswigger.net
burp
bchecks
bcheck
github
Hiding payloads in Java source code strings
Published: 23 January 2024 at 15:00 UTC...
2024-1-23 23:0:0 | 阅读: 15 |
收藏
|
PortSwigger Research - portswigger.net
u0022
bambda
quote
escapes
Top 10 web hacking techniques of 2023 - nominations open
Published: 09 January 2024 at 14:33 UTC...
2024-1-9 22:33:50 | 阅读: 15 |
收藏
|
PortSwigger Research - portswigger.net
nominations
chrome
novel
spoofing
The future of Bambdas
Emma Stocks |14 December 2023 at...
2023-12-14 18:13:23 | 阅读: 14 |
收藏
|
PortSwigger Blog - portswigger.net
bambdas
burp
bambda
websockets
proxy
Finding that one weird endpoint, with Bambdas
Published: 12 December 2023 at 14:11 UTC...
2023-12-12 22:11:17 | 阅读: 20 |
收藏
|
PortSwigger Research - portswigger.net
bambdas
bambda
bunch
Blind CSS Exfiltration: exfiltrate unknown web pages
Published: 05 December 2023 at 15:37 UTC...
2023-12-5 23:37:20 | 阅读: 17 |
收藏
|
PortSwigger Research - portswigger.net
selector
exfiltrator
1337
fallback
selectors
Introducing Bambdas
Emma Stocks |14 November 2023 at...
2023-11-14 16:27:0 | 阅读: 26 |
收藏
|
PortSwigger Blog - portswigger.net
burp
bambdas
bambda
The single-packet attack: making remote race-conditions 'local'
Published: 18 October 2023 at 12:54 UTC...
2023-10-18 20:54:1 | 阅读: 17 |
收藏
|
PortSwigger Research - portswigger.net
network
jitter
fragments
pipelining
How to build custom scanners for web security research automation
Published: 03 October 2023 at 13:34 UTC...
2023-10-3 21:34:47 | 阅读: 19 |
收藏
|
PortSwigger Research - portswigger.net
concurrent
behaviour
triage
positives
50x
DOM Invader and the case of direct eval vs indirect eval
Gareth Heyes |25 September 2023 a...
2023-9-25 22:0:0 | 阅读: 21 |
收藏
|
PortSwigger Blog - portswigger.net
invader
myvariable
xeval
scoped
New learning paths, from the Web Security Academy
Emma Stocks |13 September 2023 at...
2023-9-13 18:36:16 | 阅读: 26 |
收藏
|
PortSwigger Blog - portswigger.net
security
hear
fancy
exclusively
Supporting Sprocket Security's offensive security testing with BChecks, from Burp Suite
Emma Stocks |06 September 2023 at...
2023-9-7 01:55:16 | 阅读: 27 |
收藏
|
PortSwigger Blog - portswigger.net
bchecks
burp
security
sprocket
workflows
New techniques and tools for web race conditions
Emma Stocks |10 August 2023 at 06...
2023-8-10 14:56:15 | 阅读: 21 |
收藏
|
PortSwigger Blog - portswigger.net
portswigger
burp
jitter
tooling
network
Smashing the state machine: the true potential of web race conditions
Published: 09 August 2023 at 18:00 UTC...
2023-8-10 02:0:0 | 阅读: 50 |
收藏
|
PortSwigger Research - portswigger.net
gitlab
database
devise
The top 10 community-created BChecks, so far ...
Emma Stocks |24 July 2023 at 14:0...
2023-7-24 22:9:24 | 阅读: 31 |
收藏
|
PortSwigger Blog - portswigger.net
bcheck
bchecks
github
bcheckview
payload
Previous
2
3
4
5
6
7
8
9
Next