📓
Sfoffo - Pentesting Notes
Ctrlk
View on GitHub
  • 🏠/home/sfoffo/.pt-notes
  • 🍀Support this Project
  • 🏳️Research Blog
  • 📂Active Directory
  • 🐧Linux Privilege Escalation
  • 🪟Windows Privilege Escalation
  • 🐛Bug Bounty Hunting
  • 🕸️Web Applications
    • Web Attacks
    • Web Technologies
    • Fuzzing
  • 🔍Information Gathering
  • 📜Protocols and Services
  • 👾Utilities, Scripts and Payloads
Powered by GitBook
On this page
Edit

🕸️Web Applications

Web Penetration Testing Methodologies

  • OWASP WSTG

    • OWASP WSTG Checklists

    • WSTG Checklist.MD

    • WSTG Checklist.xlsx

  • OWASP Top 10

  • OWASP CheatSheets

  • CWE List

  • CVSS v3 Calculator

  • Mitre ATT&CK matrix


Learning Resources

  1. https://portswigger.net/web-security

  2. https://book.hacktricks.xyz/network-services-pentesting/pentesting-web

  3. https://book.hacktricks.xyz/network-services-pentesting/pentesting-web/web-api-pentesting

  4. https://book.hacktricks.xyz/pentesting-web/web-vulnerabilities-methodology