Emma.H.G
104629
Разместить
125
Баллы
5
Задачи и проблемы
0
Компромиссы
0%
App - Сценарий
0 Points0 / 33
0%
Приложение - Система
0 Points0 / 93
0%
Взлом
0 Points0 / 70
0%
Криптоанализ
0 Points0 / 75
0%
Судебная экспертиза
0 Points0 / 44
0%
Программирование
0 Points0 / 29
0%
Реалист
0 Points0 / 60
0%
Сеть
0 Points0 / 34
- x FTP - authentication
- x TELNET - authentication
- x ETHERNET - frame
- x Kerberos - Authentication
- x NTLM - Authentication
- x Twitter authentication
- x Bluetooth - Unknown file
- x CISCO - password
- x DNS - zone transfert
- x IP - Time To Live
- x LDAP - null bind
- x OSPF - Authentication
- x POP - APOP
- x RF - AM Transmission
- x Data extraction
- x RF - FM Transmission
- x RF - Key Fixed Code
- x SIP - authentication
- x ETHERNET - Patched transmission
- x Global System Traffic for Mobile communication
- x HTTP - DNS Rebinding
- x SSL - HTTP exchange
- x Netfilter - common mistakes
- x SNMP - Authentification
- x Wired Equivalent Privacy
- x ICMP payload
- x ARP Spoofing - Active listening
- x XMPP - authentication
- x RF - Satellite transmission
- x WPA2 - Enterprise
- x ARP Spoofing - The man in the middle
- x RF - L Band
- x RIPv1 - no authentication
- x WPA3 - SAE
0%
Стеганография
0 Points0 / 23
- x EXIF - Metadata
- x Dot and next line
- x Steganomobile
- x Twitter Secret Messages
- x TXT - George and Alfred
- x WAV - Noise analysis
- x Poem from Space
- x Yellow dots
- x EXIF - Thumbnail
- x Mimic - Dummy sight
- x WAV - Spectral analysis
- x APNG - Just A PNG
- x Crypt-art
- x ELF x64 - Duality
- x PDF - Embedded
- x Genius ID
- x Kitty spy
- x PNG - Least Significant Bit
- x PNG - Pixel Indicator Technique
- x PNG - Pixel Value Differencing
- x Angecryption
- x Base Jumper
- x Hide and seek
0%
Веб - Клиент
0 Points0 / 42
- x HTML - disabled buttons
- x Javascript - Authentication
- x Javascript - Source
- x Javascript - Authentication 2
- x Javascript - Obfuscation 1
- x Javascript - Obfuscation 2
- x Javascript - Native code
- x Javascript - Webpack
- x Javascript - Obfuscation 3
- x XSS - Stored 1
- x AST - Deobfuscation
- x CSP Bypass - Inline code
- x CSP Bypass - Nonce 2
- x CSRF - 0 protection
- x Web Socket - 0 protection
- x XSS DOM Based - Introduction
- x Flash - Authentication
- x XSS DOM Based - AngularJS
- x XSS DOM Based - Eval
- x CSP Bypass - Dangling markup
- x CSP Bypass - JSONP
- x CSRF - token bypass
- x XSS - Reflected
- x CSP Bypass - Dangling markup 2
- x CSP Bypass - Nonce
- x CSS - Exfiltration
- x Javascript - Obfuscation 4
- x Relative Path Overwrite
- x XSS - Stored 2
- x XSS DOM Based - Filters Bypass
- x Self XSS - DOM Secrets
- x CSPT - The Ruler
- x DOM Clobbering
- x Javascript - Obfuscation 6
- x Self XSS - Race Condition
- x Browser - bfcache / disk cache
- x HTTP Response Splitting
- x Javascript - Obfuscation 5
- x XS Leaks
- x XSS - Stored - filter bypass
- x XSS - DOM Based
- x Same Origin Method Execution
5%
Веб - сервер
125 Points5 / 96
- x HTML - Source code
- x HTTP - IP restriction bypass
- x HTTP - Open redirect
- x HTTP - User-agent
- x Weak password
- x PHP - Command injection
- x API - Broken Access
- x Backup file
- x HTTP - Directory indexing
- x HTTP - Headers
- x HTTP - POST
- x HTTP - Improper redirect
- x HTTP - Verb tampering
- x Install files
- x Nginx - Alias Misconfiguration
- x Nginx - Root Location Misconfiguration
- x API - Mass Assignment
- x CRLF
- x File upload - Double extensions
- x File upload - MIME type
- x Flask - Unsecure session
- x GraphQL - Introspection
- x HTTP - Cookies
- x Insecure Code Management
- o JWT - Introduction
- x XSS - Server Side
- x Directory traversal
- x File upload - Null byte
- o JWT - Revoked token
- o JWT - Weak secret
- o JWT - Unsecure File Signature
- x PHP - assert()
- x PHP - Apache configuration
- x PHP - Filters
- x PHP - register globals
- x PHP - Remote Xdebug
- x Python - Server-side Template Injection Introduction
- x File upload - ZIP
- x Flask - Development server
- x GraphQL - Injection
- x Command injection - Filter bypass
- x Java - Server-side Template Injection
- o JWT - Public key
- x JWT - Header Injection
- x Local File Inclusion
- x Local File Inclusion - Double encoding
- x Nginx - SSRF Misconfiguration
- x Node - Eval
- x PHP - Loose Comparison
- x PHP - preg_replace()
- x PHP - type juggling
- x Remote File Inclusion
- x SQL injection - Authentication
- x SQL injection - Authentication - GBK
- x SQL injection - String
- x XSLT - Code execution
- x Elixir - EEx
- x JWT - Unsecure Key Handling
- x LDAP injection - Authentication
- x Node - Serialize
- x NoSQL injection - Authentication
- x PHP - Path Truncation
- x PHP - Serialization
- x SQL injection - Numeric
- x SQL Injection - Routed
- x SQL Truncation
- x XML External Entity
- x XPath injection - Authentication
- x Yaml - Deserialization
- x API - Broken Access 2
- x GraphQL - Backend injection
- x GraphQL - Mutation
- x Java - Spring Boot
- x Local File Inclusion - Wrappers
- x PHP - Eval
- x PHP - Eval - Advanced filters bypass
- x SQL injection - Error
- x SQL injection - Insert
- x SQL injection - File reading
- x XPath injection - String
- x File upload - Polyglot
- x NodeJS - Prototype Pollution Bypass
- x NoSQL injection - Blind
- x SQL injection - Time based
- x Java - Custom gadget deserialization
- x NodeJS - vm escape
- x Server Side Request Forgery
- x SQL injection - Blind
- x LDAP injection - Blind
- x PHP - Unserialize overflow
- x PHP - Unserialize Pop Chain
- x SQL Injection - Second Order
- x Python - dotenv
- x Python - Blind SSTI Filters Bypass
- x XPath injection - Blind
- x SQL injection - Filter bypass