get aHEAD Writeup PicoCTF
A picoCTF web challenge writeup about using a HEAD request to retrieve the flag from HTTP response headers.
A picoCTF web challenge writeup about using a HEAD request to retrieve the flag from HTTP response headers.
A picoCTF web challenge writeup about recovering a client-side checked password from JavaScript source code.
A PortSwigger XSS lab writeup about reflected XSS in a JavaScript URL with some characters blocked.
A writeup for the picoCTF easy web challenge named n0s4n1ty 1.
A writeup for the picoCTF easy web challenge named Scavenger Hunt.
A PortSwigger XSS lab writeup about bypassing a strict CSP by using dangling markup and form hijacking.
A PortSwigger XSS lab writeup about bypassing CSP by injecting a directive through a user-controlled report-uri value.
A writeup for the picoCTF easy web challenge named Cookies.
Introduction This is a writeup for the 24th lab within the XSS PortSwigger series titled Exploiting XSS to Bypass CSRF Defenses. For the report link you can find it here Investigation From the ...
Introduction This is another writeup for an easy THM machine titled Team. We will be using the PTES methodology when performing this machine as a whole penetration test. To see the professional r...