Bug bounty Cheatsheet
by diosmercurio - Friday August 30, 2024 at 05:04 AM
#1
XSS
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xss.md
?https://github.com/ismailtasdelen/xss-payload-list

?SQLi
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/sqli.md

?SSRF
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/ssrf.md
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Server%20Side%20Request%20Forgery

?CRLF
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/crlf.md
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CRLF%20Injection

?CSV-Injection
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/csv-injection.md
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CSV%20Injection

?Command Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Command%20Injection

?Directory Traversal
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Directory%20Traversal

?LFI
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/lfi.md
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/File%20Inclusion

?XXE
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xxe.md

?Open-Redirect
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/open-redirect.md

?RCE
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/rce.md

?Crypto
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/crypto.md

?Template Injection
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/template-injection.md
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Server%20Side%20Template%20Injection

?XSLT
??https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/xslt.md

?Content Injection
?https://github.com/EdOverflow/bugbounty-cheatsheet/blob/master/cheatsheets/content-injection.md

?LDAP Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/LDAP%20Injection

?NoSQL Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/NoSQL%20Injection

?CSRF Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/CSRF%20Injection

?GraphQL Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/GraphQL%20Injection

?IDOR
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Insecure%20Direct%20Object%20References

?ISCM
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Insecure%20Source%20Code%20Management

?LaTex Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/LaTeX%20Injection

?OAuth 
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/OAuth

?XPATH Injection
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/XPATH%20Injection

?Bypass Upload Tricky
?https://github.com/swisskyrepo/PayloadsAllTheThings/tree/master/Upload%20Insecure%20Files
Reply
#2
thanks for sharing proo
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  How to get private databases for free diegofuckadona 21 408 18 minutes ago
Last Post: hellowolddda
  Web Exploitation Payloads & Bypass Techniques Fkz 38 1,287 35 minutes ago
Last Post: tcmmylnnit
  Find leaked API keys and Tokens (regex) CreateThread 27 893 1 hour ago
Last Post: burhan123
  [TUTORIAL] how to ban Instagram Accounts Piplup 2,139 134,941 2 hours ago
Last Post: AAB20
  Google Dorking - Advanced Guide pokerface 736 37,870 3 hours ago
Last Post: UnknownUser01

Forum Jump:


 Users browsing this forum: 1 Guest(s)