Commit graph

433 commits

Author SHA1 Message Date
CPol
239bc6b910
GITBOOK-4323: No subject 2024-04-27 17:08:08 +00:00
TricksterShubi
253515c367
Update flask.md 2024-04-25 17:05:47 +02:00
TricksterShubi
5be8c1b394
Update web-api-pentesting.md 2024-04-25 15:58:01 +02:00
Mohsen Barzegar
00f9604980
Fix typo wordpress.md
- Note that you won't me able to perform all the actions
+ Note that you won't be able to perform all the actions
2024-04-25 14:22:48 +03:30
Carlos Polop
fe71d5c6d2 f 2024-04-18 05:21:24 +02:00
Carlos Polop
e64fdffa7c f 2024-04-18 05:13:38 +02:00
Carlos Polop
780b55a21d wi 2024-04-18 05:10:20 +02:00
Glenn 'devalias' Grant
fec613a298
update code-review-tools javascript section
- Added new tools: Wakaru, Webcrack, Humanify
- Added some of my JS related gists to 'resources'
- Updated some broken links to use the wayback archives of the pages
- Updated some non-linked links to be clickable
- etc
2024-04-18 11:08:06 +10:00
CPol
ebe9aeec82
GITBOOK-4313: No subject 2024-04-17 05:20:33 +00:00
CPol
a78eefaa44
GITBOOK-4312: No subject 2024-04-16 03:52:03 +00:00
CPol
b1307ba3f8
GITBOOK-4311: No subject 2024-04-15 03:37:27 +00:00
cp
79f74ca8bc
Merge pull request #842 from ramandy007/patch-1
Update README.md to use java/jsp_shell_reverse_tcp for Tomcat TCP reverse shell war file generation
2024-04-11 02:55:11 +02:00
CPol
2572c94842
GITBOOK-4306: No subject 2024-04-10 13:29:30 +00:00
cp
91a2189fb2
Merge pull request #840 from jdk32f2/patch-2
Update joomla.md
2024-04-10 13:54:11 +02:00
CPol
424789476b
GITBOOK-4305: No subject 2024-04-09 00:13:56 +00:00
ramandy007
af30f0e169
Update README.md
Use correct metasploit payload for Tomcat tcp reverse shell war generation.
2024-04-08 19:19:42 +05:30
Carlos Polop
35b3c7ccfe a 2024-04-08 00:51:34 +02:00
jdk32f2
295bb77de5
Update joomla.md
Add additional method.
2024-04-07 22:47:28 +00:00
Carlos Polop
4b64ce2de1 w 2024-04-08 00:37:55 +02:00
CPol
c55d66804a
GITBOOK-4301: No subject 2024-04-06 16:25:58 +00:00
cp
998fbe1385
Merge pull request #793 from Legoclones/update-flask
Create Django article
2024-04-04 12:50:06 +02:00
CPol
31e7f071f5
GITBOOK-4288: change request with no subject merged in GitBook 2024-03-29 18:55:33 +00:00
Carlos Polop
61e2eb2350 a 2024-03-26 15:56:40 +01:00
CPol
2bba39459f
GITBOOK-4276: change request with no subject merged in GitBook 2024-03-24 11:49:57 +00:00
Carlos Polop
72f1bc0eec a 2024-03-24 12:46:48 +01:00
CPol
5b120932f3
GITBOOK-4274: change request with no subject merged in GitBook 2024-03-17 14:42:04 +00:00
CPol
43ccbd4ee9
GITBOOK-4270: change request with no subject merged in GitBook 2024-03-15 22:07:01 +00:00
Carlos Polop
1fcb0ae066 a 2024-03-15 00:01:13 +01:00
Carlos Polop
944eaa12c9 up 2024-03-09 14:02:01 +01:00
CPol
8ff32d8f1d
GITBOOK-4266: change request with no subject merged in GitBook 2024-03-09 12:57:16 +00:00
CPol
384266bfd1
GITBOOK-4259: change request with no subject merged in GitBook 2024-02-25 22:26:40 +00:00
CPol
fc13d7264a
GITBOOK-4255: change request with no subject merged in GitBook 2024-02-23 15:34:31 +00:00
CPol
eff83f8dcf
GITBOOK-4251: change request with no subject merged in GitBook 2024-02-18 14:18:26 +00:00
Carlos Polop
e65a322118 a 2024-02-09 08:15:24 +01:00
CPol
e29eb7bcb4
GITBOOK-4247: change request with no subject merged in GitBook 2024-02-09 00:32:07 +00:00
Carlos Polop
da6aaca1c2 a 2024-02-08 22:36:15 +01:00
Carlos Polop
06a639f4af a 2024-02-07 05:05:50 +01:00
Carlos Polop
5c23ce2893 a 2024-02-06 04:10:38 +01:00
Carlos Polop
a01ea62620 a 2024-02-05 03:28:59 +01:00
Carlos Polop
7cc077db55 a 2024-02-04 17:10:29 +01:00
Carlos Polop
c8d0bff233 t 2024-02-04 11:58:49 +01:00
Carlos Polop
213f0fc6f6 a 2024-02-03 17:02:14 +01:00
Carlos Polop
04ccc172f4 fix 2024-02-03 13:22:53 +01:00
Justin Applegate
09b618c00e
Flask extension isn't vulnerable anymore actually 2024-01-30 22:15:31 -05:00
Justin Applegate
8ebee8912b
Mixing up Django and Flask 2024-01-30 22:05:13 -05:00
Justin Applegate
d8a6d00b9d
Adding CVE number for Django cache manipulation 2024-01-30 22:00:55 -05:00
Justin Applegate
094bfcace9
Create django.md
Added cache manipulation
2024-01-30 21:52:51 -05:00
gitlab.com/beune
e0fd0a99d7
Update README.md
Fix typo
2024-01-26 10:39:53 +01:00
Carlos Polop
37bb97ea8e pentest-tools 2024-01-11 14:23:18 +01:00
CPol
bdb5a4b010
GITBOOK-4230: change request with no subject merged in GitBook 2024-01-10 00:59:55 +00:00
Carlos Polop
4d6eff6732 arte 2024-01-08 12:25:42 +01:00
Carlos Polop
d15c2e37d1 arte 2024-01-08 12:25:09 +01:00
Carlos Polop
c2d34d11b4 arte 2024-01-02 19:28:27 +01:00
Carlos Polop
f61bdeceae arte 2023-12-31 02:24:39 +01:00
CPol
08536c564d
GITBOOK-4222: change request with no subject merged in GitBook 2023-12-27 23:58:16 +00:00
CPol
da42a67a80
GITBOOK-4216: change request with no subject merged in GitBook 2023-12-26 00:45:07 +00:00
Carlos Polop
8ed6ac013b
Merge pull request #768 from emizzz/master
fix URL error in Joomla RCE
2023-12-25 01:33:12 +01:00
CPol
a6d32b1828
GITBOOK-4208: change request with no subject merged in GitBook 2023-12-24 18:15:27 +00:00
Carlos Polop
1699aa01ac
Merge pull request #757 from N7WEra/patch-1
Update JIRA page
2023-12-24 19:03:57 +01:00
emizzz
e1802676f6
fix URL error
I think once the code is injected, the correct URL is: 
"/templates/protostar/error.php"
and not:
"/templates/protostar/error.php/error.php"
2023-12-22 14:19:47 +01:00
Carlos Polop
f97bf8980c
Merge pull request #752 from cyberMilosz/master
Replace references to F-Secure LABS with WithSecure Labs
2023-12-19 22:44:29 +01:00
CPol
20b5224810
GITBOOK-4192: change request with no subject merged in GitBook 2023-12-16 13:28:14 +00:00
N7WEra
98c15ec776
Update the permisson list 2023-12-11 15:46:57 +00:00
N7WEra
5aa2e16fd9
Update jira.md
changed the date
2023-12-11 14:38:01 +00:00
N7WEra
08a6342a99
Update page
to reflect changes in the API
2023-12-11 14:25:00 +00:00
Miłosz Gaczkowski
2a30e960b5 Replace references to F-Secure LABS with WithSecure Labs
F-Secure split into 2 companies in early 2022. For a while, all links to labs.f-secure.com redirected to labs.withsecure.com, but this is no longer the case - leaving some links on HackTricks broken. This commit replaces all outdated links with their current locations.
2023-12-04 13:43:41 -05:00
CPol
f6cedd55e4
GITBOOK-4174: change request with no subject merged in GitBook 2023-12-04 09:33:43 +00:00
Carlos Polop
da044c173c
Merge pull request #746 from manesec/master
Update php-useful-functions-disable_functions-open_basedir-bypass
2023-11-27 07:57:04 +01:00
Mane
d1d885dcc6
Update README.md
Make more readable and add a tools p0wny-shell to automatic check and bypass .

## Reference: 

https://github.com/flozz/p0wny-shell   (source code in shell.php, In function `executeCommand` )
2023-11-21 12:02:42 -08:00
Bigyls
69a5c16e62
Remove "X-ProxyUser-Ip: 127.0.0.1" duplicate 2023-11-16 15:27:36 +01:00
CPol
f35e1aac93
GITBOOK-4152: change request with no subject merged in GitBook 2023-11-05 22:42:10 +00:00
Carlos Polop
35033a280b
Merge pull request #732 from jjfeldcher/jjfeldcher-wordpress-changes
Update wordpress.md
2023-11-05 17:47:13 +01:00
Carlos Polop
1645075b1e
Merge pull request #730 from Sn1r/master
Update 403-and-401-bypasses.md
2023-11-05 17:10:17 +01:00
Carlos Polop
101c754301
Merge pull request #726 from A1vinSmith/master
Update tomcat.md
2023-11-05 16:42:26 +01:00
CPol
a3ad24c9ea
GITBOOK-4148: change request with no subject merged in GitBook 2023-11-03 11:03:53 +00:00
Alvin Smith
64f1c9d8b0
Merge branch 'carlospolop:master' into master 2023-11-03 14:14:05 +13:00
CPol
233703a1b1
GITBOOK-4146: change request with no subject merged in GitBook 2023-11-02 16:52:21 +00:00
CPol
46d107852a
GITBOOK-4142: change request with no subject merged in GitBook 2023-10-27 16:04:24 +00:00
CPol
1015696215
GITBOOK-4141: change request with no subject merged in GitBook 2023-10-27 15:46:20 +00:00
CPol
0272b33ab5
GITBOOK-4140: change request with no subject merged in GitBook 2023-10-26 14:15:46 +00:00
jjfeldcher
fac24cd8b4
Update wordpress.md
Added some new knowledge to the Wordpress tricks page.
2023-10-25 16:42:52 -07:00
Snir Aviv
e720a71d6a
Update 403-and-401-bypasses.md 2023-10-21 15:30:38 +03:00
Alvin Smith
55cd0adf16
Update tomcat.md
Fixed the MSFVenom WAR Stageless reverse TCP payload command for Tomcat page.
2023-10-20 14:15:50 +13:00
CPol
943d735974
GITBOOK-4131: change request with no subject merged in GitBook 2023-10-16 18:10:45 +00:00
CPol
63857c0541
GITBOOK-4126: change request with no subject merged in GitBook 2023-10-15 16:45:54 +00:00
CPol
c383ffed62
GITBOOK-4125: change request with no subject merged in GitBook 2023-10-15 15:23:24 +00:00
CPol
6a5f71e401
GITBOOK-4121: change request with no subject merged in GitBook 2023-10-14 20:45:59 +00:00
CPol
aafdb7f10e
GITBOOK-4111: change request with no subject merged in GitBook 2023-10-05 14:47:43 +00:00
CPol
7f25eb4d37
GITBOOK-4108: change request with no subject merged in GitBook 2023-10-04 15:51:37 +00:00
CPol
261348bb2c
GITBOOK-4100: change request with no subject merged in GitBook 2023-09-28 15:09:34 +00:00
CPol
afd72865a1
GITBOOK-4092: change request with no subject merged in GitBook 2023-09-24 09:51:34 +00:00
Peter Potrowl
22c8a0639e
Fix sentence in werkzeug.md
Sentence made no sense
2023-09-17 21:52:17 +02:00
Carlos Polop
51bcb61305
Merge pull request #701 from afaq1337/patch-2
Update code-review-tools.md
2023-09-11 00:53:37 +02:00
Carlos Polop
8a91ee0d81
Merge pull request #700 from afaq1337/patch-1
Update code-review-tools.md
2023-09-11 00:27:19 +02:00
Carlos Polop
00a4a530df
Merge pull request #691 from viktoriia-lsg/master
Angular methodology
2023-09-11 00:07:37 +02:00
Afaq
3a92d887a8
Update code-review-tools.md
Added a tool for pnpm package manager.
2023-09-06 18:09:21 +05:00
Afaq
d0d6f13464
Update code-review-tools.md
Added a tool for RUST.
2023-09-06 18:05:05 +05:00
CPol
23c4c394e0
GITBOOK-4072: change request with no subject merged in GitBook 2023-09-05 17:43:46 +00:00
CPol
cdac602134
GITBOOK-4070: change request with no subject merged in GitBook 2023-09-05 14:44:49 +00:00
CPol
129d9d0d73
GITBOOK-4069: change request with no subject merged in GitBook 2023-09-05 14:37:12 +00:00