mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings.git
synced 2025-12-12 07:40:34 -08:00
06539ddb23f8fb67a6201948efaeebe5a7f813e5
Payloads All The Things
A list of usefull payloads and bypasses for Web Application Security
TODO:
- PHP Include
- PHP Serialization
- CSV Injection
To improve:
- RCE
- SQL injection
- XXE
- SSRF
- Upload
- Tar command exec
- Traversal Directory
- XSS
TODO v2:
- Remove "_" in dir name
/!\ Work in Progress : 40%
Description
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
bountybugbountybypasscheatsheetenumerationhackinghacktoberfestmethodologypayloadpayloadspenetration-testingpentestprivilege-escalationredteamsecurityvulnerabilityweb-application
Readme
MIT
49 MiB
Languages
Python
83.8%
Ruby
6.3%
ASP.NET
3.8%
XSLT
2.6%
Classic ASP
1.4%
Other
1.9%