πŸ““
Sfoffo - Pentesting Notes
search
⌘Ctrlk
View on GitHub
πŸ““
Sfoffo - Pentesting Notes
  • 🏠/home/sfoffo/.pt-notes
  • πŸ€Support this Projectarrow-up-right
  • 🏳️Research Blogarrow-up-right
  • πŸ“‚Active Directory
  • 🐧Linux Privilege Escalation
  • πŸͺŸWindows Privilege Escalation
  • πŸ›Bug Bounty Hunting
  • πŸ•ΈοΈWeb Applications
    • Web Attacks
    • Web Technologies
    • Fuzzing
  • πŸ”Information Gathering
  • πŸ“œProtocols and Services
  • πŸ‘ΎUtilities, Scripts and Payloads
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
githubEdit

πŸ•ΈοΈWeb Applications

hashtag
Web Penetration Testing Methodologies

  • OWASP WSTGarrow-up-right

    • OWASP WSTG Checklistsarrow-up-right

    • WSTG Checklist.MDarrow-up-right

    • WSTG Checklist.xlsxarrow-up-right

  • OWASP Top 10arrow-up-right

  • OWASP CheatSheetsarrow-up-right

  • CWE Listarrow-up-right

  • CVSS v3 Calculatorarrow-up-right

  • Mitre ATT&CK matrixarrow-up-right


hashtag
Learning Resources

  1. https://portswigger.net/web-securityarrow-up-right

  2. https://book.hacktricks.xyz/network-services-pentesting/pentesting-webarrow-up-right

  3. https://book.hacktricks.xyz/network-services-pentesting/pentesting-web/web-api-pentestingarrow-up-right

  4. https://book.hacktricks.xyz/pentesting-web/web-vulnerabilities-methodologyarrow-up-right