webhacking.kr
BABY -- XSS (base)NotSQLbaby toctou -- Race Conditiong00gle1 -- Formsg00gle2 -- Sheetsold-01 -- Change Cookieold-02 -- SQLi (Blind via Cookie)old-03 -- Nonogram (SQLi)old-04 -- Hash Generationold-05 -- JavaScript (RE + Null Byte Bypass)old-06 -- PHP (Base64)old-07 -- SQLi (Union Not Exist Bypass)old-08 -- SQLi (User-Agent)old-09 -- SQLi (No Logical Operators)old-10 -- Javascript (CSS)old-11 -- RegEx Matchold-12 -- Javascript (AAEncode)old-13 -- SQLi (Heavy Filters, No Table Name or No Column Name)old-14 -- JavaScript (Auth)old-15 -- JavaScript (Autoredirect)old-16 -- JavaScript (Event)old-17 -- JavaScript (Auth)old-18 -- SQLi (Tab)old-19 -- Auth (Hashes Chars)old-20 -- Captcha + Timer Formold-21 -- SQLi (Blind Extract Password)old-22 -- SQLi (Password+Salt)old-23 -- XSS Filter Bypass With Null Bytesold-24 -- PHP (extract)old-25 -- PHP LFIold-26 -- PHP (2x URLEncode)old-27 -- SQLi (Parenthesis)old-28 -- .htaccessold-29 -- SQLi (via Filename)old-30 -- MySQL Connection Hijackold-31 -- Server Connectionold-32 -- Session (Cookie Abuse)old-33 -- HTTP&PHP Miscold-34 -- Javascript (Debug)old-35 -- SQLi (Insert)old-36 -- viold-37 -- Router Port Forwardingold-38 -- SQLi (Newline)old-39 -- SQLi (Length)old-40 -- SQLi (Blind)old-41 -- Filenames And Errorsold-42 -- Client Download Restrictionold-43 -- No Brainer Webshellold-43 Revenge -- PHP In Imageold-44 -- Command Injectionold-45 -- SQLi (Unicode)old-46 -- SQLi (String Formats)old-47 -- Mail Header Injectionold-48 -- Command Injection (Filename)old-49 -- SQLi (OR Logical Operator Symbol)old-50 -- SQLi (Unicode)old-51 -- SQLi (Binary MD5)old-52 -- SQLi + SSRFold-53 -- SQLi (MySQL PROCEDURE ANALYSE)old-54 -- Miscold-55 -- SQLi (Blind)old-56 -- Unrestricted File Search In Secretsold-57 -- Conditional Time Delaysold-58 -- JavaScript (Sockets)old-59 -- SQLi (Reverse)old-61 -- SQLi (Value As Column)sliping beauty -- Zip Slip Attack
Last updated