René's URL Explorer Experiment


Title: GitHub - abbycantcode/learn365: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection. · GitHub

Open Graph Title: GitHub - abbycantcode/learn365: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.

X Title: GitHub - abbycantcode/learn365: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.

Description: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection. - abbycantcode/learn365

Open Graph Description: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection. - abbycantcode/learn365

X Description: This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection. - abbycantcode/learn365

Opengraph URL: https://github.com/abbycantcode/learn365

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository
route-controllerfiles
route-actiondisambiguate
fetch-noncev2:f656f653-5dfe-7570-ddbf-5dab1544fe4f
current-catalog-service-hashf3abb0cc802f3d7b95fc8762b94bdcb13bf39634c40c357301c4aa1d67a256fb
request-id842A:13B657:2BD3ABA:3C6CCD8:6A63164F
html-safe-nonce3087cd5861034b3f908db74dfa9420d278312996c5e073a699f65916d47b3d33
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiI4NDJBOjEzQjY1NzoyQkQzQUJBOjNDNkNDRDg6NkE2MzE2NEYiLCJ2aXNpdG9yX2lkIjoiNzgxNjMyMDY4NjM4Mjg0NzU2NyIsInJlZ2lvbl9lZGdlIjoiaWFkIiwicmVnaW9uX3JlbmRlciI6ImlhZCJ9
visitor-hmacdc7187de35324f5b63d625a7b2abad775b3bf23d85f17ca07c8bcceffc55e665
hovercard-subject-tagrepository:453058937
github-keyboard-shortcutsrepository,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location//
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/abbycantcode/learn365
twitter:imagehttps://opengraph.githubassets.com/9cf691d049fe115b7df1ddf11b8d2c2201435bd280c0871774cbfe22bccff720/abbycantcode/learn365
twitter:cardsummary_large_image
og:imagehttps://opengraph.githubassets.com/9cf691d049fe115b7df1ddf11b8d2c2201435bd280c0871774cbfe22bccff720/abbycantcode/learn365
og:image:altThis repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection. - abbycantcode/learn365
og:image:width1200
og:image:height600
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None1a6c056e02f174fffc096c521ec0ff6fb83e40a2ec8cb8875466ec1524872dd6
turbo-cache-controlno-cache
go-importgithub.com/abbycantcode/learn365 git https://github.com/abbycantcode/learn365.git
octolytics-dimension-user_id98319206
octolytics-dimension-user_loginabbycantcode
octolytics-dimension-repository_id453058937
octolytics-dimension-repository_nwoabbycantcode/learn365
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forktrue
octolytics-dimension-repository_parent_id326033603
octolytics-dimension-repository_parent_nwoharsh-bothra/learn365
octolytics-dimension-repository_network_root_id326033603
octolytics-dimension-repository_network_root_nwoharsh-bothra/learn365
turbo-body-classeslogged-out env-production page-responsive
disable-turbofalse
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release6a93e25585f487ddff9e3996c06d5b869d6e1828
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/abbycantcode/learn365#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fabbycantcode%2Flearn365
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub Copilot appDirect agents from issue to mergehttps://github.com/features/ai/github-app
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
Code QualityEnforce quality at mergehttps://github.com/features/code-quality
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
View all resourceshttps://github.com/resources
GitHub SponsorsFund open source developershttps://github.com/open-source/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/open-source/accelerator
GitHub Starshttps://stars.github.com
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/enterprise/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fabbycantcode%2Flearn365
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E&source=header-repo&source_repo=abbycantcode%2Flearn365
Reloadhttps://github.com/abbycantcode/learn365
Reloadhttps://github.com/abbycantcode/learn365
Reloadhttps://github.com/abbycantcode/learn365
abbycantcode https://github.com/abbycantcode
learn365https://github.com/abbycantcode/learn365
harsh-bothra/learn365https://github.com/harsh-bothra/learn365
Notifications https://github.com/login?return_to=%2Fabbycantcode%2Flearn365
Fork 0 https://github.com/login?return_to=%2Fabbycantcode%2Flearn365
Star 1 https://github.com/login?return_to=%2Fabbycantcode%2Flearn365
Code https://github.com/abbycantcode/learn365
Pull requests 0 https://github.com/abbycantcode/learn365/pulls
Actions https://github.com/abbycantcode/learn365/actions
Projects https://github.com/abbycantcode/learn365/projects
Security and quality 0 https://github.com/abbycantcode/learn365/security
Insights https://github.com/abbycantcode/learn365/pulse
Code https://github.com/abbycantcode/learn365
Pull requests https://github.com/abbycantcode/learn365/pulls
Actions https://github.com/abbycantcode/learn365/actions
Projects https://github.com/abbycantcode/learn365/projects
Security and quality https://github.com/abbycantcode/learn365/security
Insights https://github.com/abbycantcode/learn365/pulse
https://github.com/abbycantcode/learn365
Brancheshttps://github.com/abbycantcode/learn365/branches
Tagshttps://github.com/abbycantcode/learn365/tags
https://github.com/abbycantcode/learn365/branches
https://github.com/abbycantcode/learn365/tags
188 Commitshttps://github.com/abbycantcode/learn365/commits/main/
https://github.com/abbycantcode/learn365/commits/main/
MindMapshttps://github.com/abbycantcode/learn365/tree/main/MindMaps
MindMapshttps://github.com/abbycantcode/learn365/tree/main/MindMaps
dayshttps://github.com/abbycantcode/learn365/tree/main/days
dayshttps://github.com/abbycantcode/learn365/tree/main/days
README.mdhttps://github.com/abbycantcode/learn365/blob/main/README.md
README.mdhttps://github.com/abbycantcode/learn365/blob/main/README.md
suggestions.mdhttps://github.com/abbycantcode/learn365/blob/main/suggestions.md
suggestions.mdhttps://github.com/abbycantcode/learn365/blob/main/suggestions.md
READMEhttps://github.com/abbycantcode/learn365
https://github.com/abbycantcode/learn365#learn365
Harsh Bothrahttps://twitter.com/harshbothra_
Mehedi Hasan Remonhttps://twitter.com/remonsec
2FA Bypass Techniqueshttps://t.co/HPi5ZP2SKG?amp=1
Scope Based Reconhttps://www.xmind.net/m/hKKexj/
Cookie Based Authentication Vulnerabilitieshttp://www.xmind.net/m/2FwJ7D
Unauthenticated JIRA CVEshttps://raw.githubusercontent.com/harsh-bothra/learn365/main/MindMaps/JIRA_CVEs.png
Android Application Penetration Testing Checklisthttps://www.xmind.net/m/GkgaYH/
2FA Bypass Techniqueshttps://github.com/abbycantcode/learn365/blob/main/days/day1.md
Regular Expression Denial Of Servicehttps://github.com/abbycantcode/learn365/blob/main/days/day2.md
SAML Vulnerabilitieshttps://github.com/abbycantcode/learn365/blob/main/days/day3.md
Unauthenticated & Exploitable JIRA Vulnerabilities https://github.com/abbycantcode/learn365/blob/main/days/day4.md
Client-Side Template Injection(CSTI)https://github.com/abbycantcode/learn365/blob/main/days/day5.md
Cross-Site Leaks (XS-Leaks)https://github.com/abbycantcode/learn365/blob/main/days/day6.md
Cross-Site Script Includes (XSSI)https://github.com/abbycantcode/learn365/blob/main/days/day7.md
JSON Padding Attackshttps://github.com/abbycantcode/learn365/blob/main/days/day8.md
JSON Attackshttps://github.com/abbycantcode/learn365/blob/main/days/day9.md
Abusing Hop-by-Hop Headershttps://github.com/abbycantcode/learn365/blob/main/days/day10.md
Cache Poisoned Denial of Service (CPDos)https://github.com/abbycantcode/learn365/blob/main/days/day11.md
Unicode Normalizationhttps://github.com/abbycantcode/learn365/blob/main/days/day12.md
WebSocket Vulns (Part-1)https://github.com/abbycantcode/learn365/blob/main/days/day13.md
WebSocket Vulns (Part-2)https://github.com/abbycantcode/learn365/blob/main/days/day14.md
WebSocket Vulns (Part-3)https://github.com/abbycantcode/learn365/blob/main/days/day15.md
Web Cache Deception Attackhttps://github.com/abbycantcode/learn365/blob/main/days/day16.md
Session Puzzling Attackhttps://github.com/abbycantcode/learn365/blob/main/days/day17.md
Mass Assignment Attackhttps://github.com/abbycantcode/learn365/blob/main/days/day18.md
HTTP Parameter Pollutionhttps://github.com/abbycantcode/learn365/blob/main/days/day19.md
GraphQL Series (Part-1)https://github.com/abbycantcode/learn365/blob/main/days/day20.md
GraphQL Vulnerabilities (Part-2)https://github.com/abbycantcode/learn365/blob/main/days/day21.md
GraphQL WrapUp (Part-3)https://github.com/abbycantcode/learn365/blob/main/days/day22.md
Password Reset Token Issueshttps://github.com/abbycantcode/learn365/blob/main/days/day23.md
My previous workshttps://github.com/abbycantcode/learn365/blob/main/days/day24.md
Salesforce Security Misconfiguration (Part-1)https://github.com/abbycantcode/learn365/blob/main/days/day25.md
Salesforce Security Misconfiguration (Part-2))https://github.com/abbycantcode/learn365/blob/main/days/day26.md
Salesforce Configuration Review (Wrap)https://github.com/abbycantcode/learn365/blob/main/days/day27.md
Common Business Logic Issues: Part-1https://github.com/abbycantcode/learn365/blob/main/days/day28.md
Common Business Logic Issues (Part-2)https://github.com/abbycantcode/learn365/blob/main/days/day29.md
Common Business Logic Issues (Wrap)https://github.com/abbycantcode/learn365/blob/main/days/day30.md
Captcha Bypass Techniqueshttps://github.com/abbycantcode/learn365/blob/main/days/day31.md
Pentesting Kibana Servicehttps://github.com/abbycantcode/learn365/blob/main/days/day32.md
Pentesting Docker Registryhttps://github.com/abbycantcode/learn365/blob/main/days/day33.md
HTML Scriptless Attacks / Dangling Markup Attacks (Part - 1)https://github.com/abbycantcode/learn365/blob/main/days/day34.md
HTML Scriptless Attacks / Dangling Markup Attacks (Wrap)https://github.com/abbycantcode/learn365/blob/main/days/day35.md
Pentesting Rsync Servicehttps://github.com/abbycantcode/learn365/blob/main/days/day36.md
CRLF Injectionhttps://github.com/abbycantcode/learn365/blob/main/days/day37.md
Pentesting FTP Servicehttps://github.com/abbycantcode/learn365/blob/main/days/day38.md
OpenID Connect Implementation Issueshttps://github.com/abbycantcode/learn365/blob/main/days/day39.md
Cookie Based Authentication Vulnerabilitieshttps://github.com/abbycantcode/learn365/blob/main/days/day40.md
Cobalt Vulnerability Wiki - Resourcehttps://github.com/abbycantcode/learn365/blob/main/days/day41.md
Race Conditionshttps://github.com/abbycantcode/learn365/blob/main/days/day42.md
SMTP Open Relay Attackhttps://github.com/abbycantcode/learn365/blob/main/days/day43.md
Pentesting BACNethttps://github.com/abbycantcode/learn365/blob/main/days/day44.md
API Security Tipshttps://github.com/abbycantcode/learn365/blob/main/days/day45.md
Pentesting SSH - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day46.md
CORS Misconfigurationhttps://github.com/abbycantcode/learn365/blob/main/days/day47.md
Incomplete Trailing Escape Pattern Issuehttps://github.com/abbycantcode/learn365/blob/main/days/day48.md
Pivoting & Exploitation in Docker Environments - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day49.md
Detect Complex Code Patterns using Semantic grep - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day50.md
Student Roadmap to Become a Pentester - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day51.md
Hacking How-To Series - Playlisthttps://github.com/abbycantcode/learn365/blob/main/days/day52.md
JS Prototype Pollutionhttps://github.com/abbycantcode/learn365/blob/main/days/day53.md
JSON Deserialization Attackshttps://github.com/abbycantcode/learn365/blob/main/days/day54.md
Android App Dynamic Analysis using Househttps://github.com/abbycantcode/learn365/blob/main/days/day55.md
Testing IIS Servershttps://github.com/abbycantcode/learn365/blob/main/days/day56.md
Secure Code Review - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day57.md
JSON Interoperability Vulnerabilities - Research Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day58.md
HTTP Desync Attacks - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day59.md
XSLT Injectionhttps://github.com/abbycantcode/learn365/blob/main/days/day60.md
Bypassing AWS Policies - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day61.md
Source Code Review Guidelines - Resourcehttps://github.com/abbycantcode/learn365/blob/main/days/day62.md
All of the Threats: Intelligence, Modelling and Hunting - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day63.md
Hidden Property Abuse (HPA) attack in Node.js - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day64.md
HTTP Request Smuggling in 2020 - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day65.md
Dependecy Confusion Attack - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day66.md
Format String Vulnerabilities - Webinarhttps://github.com/abbycantcode/learn365/blob/main/days/day67.md
Mobile Application Dynamic Analysis - Webinarhttps://github.com/abbycantcode/learn365/blob/main/days/day68.md
Insecure Deserialization - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day69.md
Web Cache Entanglement - Talk + Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day70.md
OWASP AMASS - Bootcamphttps://github.com/abbycantcode/learn365/blob/main/days/day71.md
Offensive Javascript Techniques for Red Teamershttps://github.com/abbycantcode/learn365/blob/main/days/day72.md
Basic CMD for Pentesters - Cheatsheethttps://github.com/abbycantcode/learn365/blob/main/days/day73.md
Investigating and Defending Office 365 - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day74.md
WinjaCTF 2021 Solutions - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day75.md
Kubernetes Security: Attacking and Defending K8s Clusters - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day76.md
AWS Cloud Security - Resourceshttps://github.com/abbycantcode/learn365/blob/main/days/day77.md
WAF Evasion Techniques - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day78.md
File Inclusion - All-in-Onehttps://github.com/abbycantcode/learn365/blob/main/days/day79.md
DockerENT Insights - Tool Demo Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day80.md
ImageMagick - Shell injection via PDF password : Research Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day81.md
Offensive GraphQL API Pentesting - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day82.md
Bug Bounties with Bash - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day83.md
Chrome Extensions Code Review - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day84.md
Server-Side Template Injection - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day85.md
Exploiting GraphQL - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day86.md
Exploiting Email Systems - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day87.md
Hacking with DevTools - Tutorialhttps://github.com/abbycantcode/learn365/blob/main/days/day88.md
Common Android Application Vulnerabilities - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day89.md
SAML XML Injection - Research Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day90.md
Finding Access Control & Authorization Issues with Burp - Blogshttps://github.com/abbycantcode/learn365/blob/main/days/day91.md
OAuth 2.0 Misimplementation, Vulnerabilities, and Best Practices - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day92.md
JWT Attacks - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day93.md
Random Readingshttps://github.com/abbycantcode/learn365/blob/main/days/day94_102.md
Attacking Ruby on Rails Applications - Whitepaperhttps://github.com/abbycantcode/learn365/blob/main/days/day103.md
Pentesting a Chrome Extension: Real Life Case Study - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day104.md
XXE Simplified - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day105.md
Web Hacking Pro Tips #9 with @zseano - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day106.md
JS Prototype Pollution - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day107.md
XSS via GraphQL Endpoint - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day108.md
WS-2016-7107: CSRF tokens in Spring and the BREACH attack - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day109.md
AWS SSRF Metadata Leakage - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day110.md
Burp Suite Extension Development - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day111.md
Random Readingshttps://github.com/abbycantcode/learn365/blob/main/days/day112_115.md
Hacking OAuth Apps Pt-1 - Tutorialhttps://github.com/abbycantcode/learn365/blob/main/days/day116.md
Portable Data exFiltration: XSS for PDFs - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day117.md
PoC code and a case study on Task Hijacking in Android explaining how and why it works. (aka StrandHogg) - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day118.md
OAuth - Flawed CSRF Protection - Tutorialhttps://github.com/abbycantcode/learn365/blob/main/days/day119.md
Hacking Electron Apps with Electronegativity - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day120.md
Awesome ElectronJS Hacking Resourceshttps://github.com/abbycantcode/learn365/blob/main/days/day121.md
Pentesting Blockchain Solutions - Tutorialhttps://github.com/abbycantcode/learn365/blob/main/days/day122.md
Random Readingshttps://github.com/abbycantcode/learn365/blob/main/days/day123_124.md
Oversized XML Attack - Wikihttps://github.com/abbycantcode/learn365/blob/main/days/day125.md
XML Complexity Attack in Soap Header - Wikihttps://github.com/abbycantcode/learn365/blob/main/days/day126.md
Web Service Attacks [Remaining] - Wikihttps://github.com/abbycantcode/learn365/blob/main/days/day127.md
Domain Hijacking Via Logic Error - Gandi And Route 53 Vulnerability - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day128.md
Automating Recon with Axiom - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day129.md
Testing Extensions in Chromium Browsers - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day130.md
iOS Pentesting Series Pt. - 1 - Tutorialhttps://github.com/abbycantcode/learn365/blob/main/days/day131.md
DNS Based Out of Band Blind SQL injection in Oracle — Dumping data - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day132.md
GitDorker Talk - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day133.md
Mobisec 2020 Slides - Slides & Videoshttps://github.com/abbycantcode/learn365/blob/main/days/day134.md
Web App Pentesting in Angular Context - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day135.md
RCE in Homebrew - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day136.md
WordPress Plugin Security Testing Cheat Sheet - Wikihttps://github.com/abbycantcode/learn365/blob/main/days/day137.md
JavaScript prototype pollution: practice of finding and exploitation - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day138.md
HowTo: intercept mutually-authenticated TLS communications of a Java thick client - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day139.md
UBERNETES NAMESPACES ISOLATION - WHAT IT IS, WHAT IT ISN'T, LIFE, UNIVERSE AND EVERYTHING - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day140.md
Frag Attacks - Wikihttps://github.com/abbycantcode/learn365/blob/main/days/day141.md
Free Automated Recon Using GH Actions - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day142.md
DAY[0] Episode 66 - BlackHat USA, Pre-Auth RCEs, and JSON Smuggling - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day143.md
Bug hunter adventures - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day144.md
Static Analysis of Client-Side JS Code - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day145.md
Method Confusion In Go SSTIs Lead To File Read And RCE - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day146.md
Finding and Exploiting Unintended Functionality in Main Web App APIs - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day147.md
SecuriTEA & Crumpets - Episode 6 - Gareth Heyes - Hackvertor - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day148.md
GraphQL CSRF - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day149.md
Deep dive into ART(Android Runtime) for dynamic binary analysis - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day150.md
13 Nagios Vulnerabilities - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day151.md
Frida Scripting Guide - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day152.md
Android Exported Activities and how to exploit them - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day153.md
XXE-scape through the front door: circumventing the firewall with HTTP request smuggling - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day154.md
Turning Blind RCE into Good RCE via DNS Exfiltration using Collabfiltrator - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day155.md
XSS in AWS Console - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day156.md
Adventures into HTTP2 and HTTP3 - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day157.md
AppCache's forgotten tales - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day158.md
CVE-2021-33564 Argument Injection in Ruby Dragonfly - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day159.md
DevSecOps 100 - Introductory Couse [Free] - Coursehttps://github.com/abbycantcode/learn365/blob/main/days/day160.md
Unexpected Execution: Wild Ways Code Execution can Occur in Python - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day161.md
Retrieving AWS security credentials from the AWS console - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day162.md
Object Injection to SQL Injection & NoSql Injection Cheatsheet - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day163.md
HTTP Parameter Pollution - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day164.md
XXE Workshop - Labshttps://github.com/abbycantcode/learn365/blob/main/days/day165.md
How to Analyze Code for Vulnerabilities - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day166.md
Testing 2FA - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day167.md
Your E-Mail Validation Logic is Wrong - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day168.md
Active Scanning Techniques - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day169.md
Bypassing 2FA using OpenId Misconfiguration - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day170.md
Security Shorts - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day171.md
The JavaScript Bridge in Modern Desktop Applications - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day172.md
Advanced Web Application Penetration Testing JWT Security Issues - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day173.md
Quick Analysis for the SSID Format String Bug - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day174.md
Live GitLab Ask a Hacker with Bug Bounty Hunter (vakzz) William Bowling (Public) - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day175.md
iOS App Testing Through Burp on Corellium - bloghttps://github.com/abbycantcode/learn365/blob/main/days/day176.md
Blind XSS: setup your self-hosted XSS Hunter with the PwnMachine - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day177.md
Attacking GraphQL's Autocorrect - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day178.md
Apex Security Whitepaper - Paper + Labshttps://github.com/abbycantcode/learn365/blob/main/days/day179.md
Django SSTI - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day180.md
Pen-Testing Salesforce SAAS Application - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day181.md
How to solve an XSS challenge from Intigriti in under 60 minutes - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day182.md
How to get the max out of an IDOR? - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day183.md
Pre-auth RCE in ForgeRock OpenAM (CVE-2021-35464) - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day184.md
Some ways to find more IDOR - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day185.md
A supply-chain breach: Taking over an Atlassian account - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day186.md
alert() is dead, long live print() - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day187.md
Hacker Heroes #3 - @TomNomNom (Interview) - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day188.md
SSRF in ColdFusion/CFML Tags and Functions - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day189.md
$25,000 Facebook postMessage account takeover vulnerability - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day190.md
Pentester Diaries Ep6: The Importance of Report Writing - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day191.md
Introduction to Web Cache Poisoning - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day192.md
Intercepting Flutter iOS Application - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day193.md
Credential stuffing in Bug bounty hunting - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day194.md
What is a Browser Security Sandbox?! (Learn to Hack Firefox) - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day195.md
WILSON Cloud Respwnder - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day196.md
$20,000 RCE in GitLab via 0day in exiftool metadata processing library CVE-2021-22204 - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day197.md
Padding Oracle Attacks - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day198.md
Demystifying the state of kubernetes cluster security - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day199.md
Two One-liners for Quick ColdFusion Static Analysis Security Testing - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day200.md
So many different techniques to learn here! [CTF walkthrough] - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day201.md
UDP Technology IP Camera vulnerabilities - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day202.md
Exploiting the Sudo Baron Samedit vulnerability (CVE-2021-3156) on VMWare vCenter Server 7.0 - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day203.md
Reflected XSS Through Insecure Dynamic Loading - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day204.md
Stored XSS via Mermaid Prototype Pollution vulnerability - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day205.md
Getting Partial AWS Account IDs for any Cloudfront Website - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day206.md
Remote code execution in cdnjs of Cloudflare - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day207.md
Docker Security Series - Serieshttps://github.com/abbycantcode/learn365/blob/main/days/day208.md
REvil Vanishes! - Chrome Zero-Day Vulnerability, iOS WiFi SSID Bug, Patch Tuesday Review - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day209.md
How to Build a Phishing Engagement – Coding TTP’s - Webcasthttps://github.com/abbycantcode/learn365/blob/main/days/day210.md
Deep Link Exploitation: Introduction & Open/unvalidated Redirection - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day211.md
Exploiting Android WebView Vulnerabilities - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day212.md
WooCommerce Unauthenticated SQL Injection Vulnerability - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day213.md
Traversing My Way in the Internal Network - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day214.md
How I Found Multiple Bugs On FaceBook In 1 Month And a Part For My Methodology & Tools - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day215.md
Pre-Auth RCE in ManageEngine OPManager - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day216.md
Guest Blog Post - Attacking the DevTools - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day217.md
Kubernetes Hardening Guide - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day218.md
Introducing hallucinate: One-stop TLS traffic inspection and manipulation using dynamic instrumentation - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day219.md
Do Not use alert(1) in XSS - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day220.md
A Look Into zseano's Thoughts When Testing a Target - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day221.md
Zimbra 8.8.15 - Webmail Compromise via Email - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day222.md
Security XML Implementation across the Web - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day223.md
Potential remote code execution in PyPi - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day224.md
XXE Case Studies - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day225.md
HackerTools - NoSQLMap - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day226.md
Learn with @sec_r0: Attacks and Defenses to Docker & Kubernetes - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day227.md
Source Zero Con Talks - Talkshttps://github.com/abbycantcode/learn365/blob/main/days/day228.md
DevOps for Hackers with Hands-On Labs w/ Ralph May - Talkshttps://github.com/abbycantcode/learn365/blob/main/days/day229.md
Advanced Recon Guide - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day230.md
Just Gopher It: Escalating a Blind SSRF to RCE for $15k - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day231.md
Stealing Bitcoin with Cross-Site Request Forgery (Ride the Lightning + Umbrel) - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day232.md
Modify in-flight data to payment provider Smart2Pay - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day233.md
Hacker Heroes #9 - RobinZekerNiet (Interview) - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day234.md
Learn with @HolyBugx: Demystifying Cookies and Tokens - Talkhttps://github.com/abbycantcode/learn365/blob/main/days/day235.md
Hacker Tools: ReNgine – Automatic recon - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day236.md
FROM PWN2OWN 2021: A NEW ATTACK SURFACE ON MICROSOFT EXCHANGE - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day237.md
How to Hack Apple ID - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day238.md
Insecure Features in PDFs - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day239.md
Burp Upload Scanner - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day240.md
Adobe Reader - PDF callback via XSLT stylesheet in XFA - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day241.md
A Curious Exploration of Malicious PDF Documents - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day242.md
Common mistakes when using permissions in Android - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day243.md
iOS Pentesting 101 - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day244.md
API Tokens: A Tedious Survey - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day245.md
Cross-Site Request Forgery (CSRF) Complete Guide - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day246.md
HTTP Desync Attack Explained With Paper - Videohttps://github.com/abbycantcode/learn365/blob/main/days/day247.md
AWS ReadOnlyAccess: Not Even Once - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day248.md
Understanding Salesforce Flows and Common Security Risks - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day249.md
Python context free payloads in Mako templates - Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day250.md
CVE-2021-26084 Remote Code Execution on Confluence Servershttps://github.com/abbycantcode/learn365/blob/main/days/day251.md
Introduction to smart contract security and hacking in Ethereumhttps://github.com/abbycantcode/learn365/blob/main/days/day252.md
Automating Authorization Testing: AuthMatrix – Part 1https://github.com/abbycantcode/learn365/blob/main/days/day253.md
Go Fuzz Yourself – How to Find More Vulnerabilities in APIs Through Fuzzinghttps://github.com/abbycantcode/learn365/blob/main/days/day254.md
More secure Facebook Canvas : Tale of $126k worth of bugs that lead to Facebook Account Takeovershttps://github.com/abbycantcode/learn365/blob/main/days/day255.md
Smart Contract Security Verification Standardhttps://github.com/abbycantcode/learn365/blob/main/days/day256.md
Remote File Inclusion Zines by @sec_r0https://github.com/abbycantcode/learn365/blob/main/days/day257.md
GitHub Actions check-spelling community workflow - GITHUB_TOKEN leakage via advice.txt symlinkhttps://github.com/abbycantcode/learn365/blob/main/days/day258.md
Write-Up on Facebook Bughttps://github.com/abbycantcode/learn365/blob/main/days/day259.md
Mass assignment and learning new thingshttps://github.com/abbycantcode/learn365/blob/main/days/day260.md
A different way to attack certain reverse proxieshttps://github.com/abbycantcode/learn365/blob/main/days/day261.md
Introducing Process Hiving & RunPEhttps://github.com/abbycantcode/learn365/blob/main/days/day262.md
IAM Vulnerable - An AWS IAM Privilege Escalation Playgroundhttps://github.com/abbycantcode/learn365/blob/main/days/day263.md
Complete Jailbreak Charthttps://github.com/abbycantcode/learn365/blob/main/days/day264.md
OWASP Top 10 2021https://github.com/abbycantcode/learn365/blob/main/days/day265.md
Powershell for Pentestershttps://github.com/abbycantcode/learn365/blob/main/days/day266.md
How to search for XSS (with blacklisted HTML tags)https://github.com/abbycantcode/learn365/blob/main/days/day267.md
How to learn anything in Computer Science or Cybersecurity - Security Simplifiedhttps://github.com/abbycantcode/learn365/blob/main/days/day268.md
Reused VMWare exploits & Escaping Azure Container Instances [Bug Bounty Podcast]https://github.com/abbycantcode/learn365/blob/main/days/day269.md
Docker Hackinghttps://github.com/abbycantcode/learn365/blob/main/days/day270.md
Getting Started in Blockchain Security and Smart Contract Auditing - Beau Bullockhttps://github.com/abbycantcode/learn365/blob/main/days/day271.md
HacktivityConhttps://github.com/abbycantcode/learn365/blob/main/days/day272.md
CrikeyCon 2021 - Shubham Shah - Hacking on Bug Bounties for Five Yearshttps://github.com/abbycantcode/learn365/blob/main/days/day273.md
Beginners Guide to 0day/CVE AppSec Researchhttps://github.com/abbycantcode/learn365/blob/main/days/day274.md
VULNERABILITY DIGGING WITH CODEQLhttps://github.com/abbycantcode/learn365/blob/main/days/day275.md
OMIGOD: Critical Vulnerabilities in OMI Affecting Countless Azure Customershttps://github.com/abbycantcode/learn365/blob/main/days/day276.md
Post Exploitation - Transferring Files To Windows Targetshttps://github.com/abbycantcode/learn365/blob/main/days/day277.md
SecuriTEA & Crumpets - Episode 12 - Ksenia Peguerohttps://github.com/abbycantcode/learn365/blob/main/days/day278.md
Talk: Absolute AppSec Ep. #147 - James Kettle (@albinowax), Security Researchhttps://github.com/abbycantcode/learn365/blob/main/days/day279.md
A Flickr CSRF, GitLab, & OMIGOD, Azure again? [Bug Bounty Podcast]https://github.com/abbycantcode/learn365/blob/main/days/day280.md
NETGEAR smart switches, SpookJS, & Parallels Desktop [Binary Exploitation Podcast]https://github.com/abbycantcode/learn365/blob/main/days/day281.md
Unusual Applications of OpenAI in Cybersecurity + How to get into CTFshttps://github.com/abbycantcode/learn365/blob/main/days/day282.md
SiegeCast "COBALT STRIKE BASICS" with Tim Medin and Joe Vesthttps://github.com/abbycantcode/learn365/blob/main/days/day283.md
An Attacker's Approach to Pentesting IBM Cloud - fwd:cloudsec 2021https://github.com/abbycantcode/learn365/blob/main/days/day284.md
echo "Shell Injection"https://github.com/abbycantcode/learn365/blob/main/days/day285.md
Exploiting Jinja SSTI with limited payload size.https://github.com/abbycantcode/learn365/blob/main/days/day286.md
Fuzzing WebSocket messages on Burpsuitehttps://github.com/abbycantcode/learn365/blob/main/days/day287.md
Thinking About Simple SQL Injectionshttps://github.com/abbycantcode/learn365/blob/main/days/day288.md
Training XSS Muscleshttps://github.com/abbycantcode/learn365/blob/main/days/day289.md
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wildhttps://github.com/abbycantcode/learn365/blob/main/days/day290.md
Chasing a Dream:: Pre-authenticated Remote Code Execution in Dedecmshttps://github.com/abbycantcode/learn365/blob/main/days/day291.md
Multiple bugs allowed malicious Android Applications to takeover Facebook/Workplace accountshttps://github.com/abbycantcode/learn365/blob/main/days/day292.md
Ping'ing XMLSechttps://github.com/abbycantcode/learn365/blob/main/days/day293.md
10 Types of Web Vulnerabilities that are Often Missedhttps://github.com/abbycantcode/learn365/blob/main/days/day294.md
CVE-2021–35215, SolarWinds Orion Deserialization to RCE.https://github.com/abbycantcode/learn365/blob/main/days/day295.md
Bachelor's thesis on HTTP Request Smugglinghttps://github.com/abbycantcode/learn365/blob/main/days/day296.md
Stored XSS in markdown via the DesignReferenceFilterhttps://github.com/abbycantcode/learn365/blob/main/days/day297.md
Building a POC for CVE-2021-40438https://github.com/abbycantcode/learn365/blob/main/days/day298.md
Turbo Intruder: Embracing the billion-request attackhttps://github.com/abbycantcode/learn365/blob/main/days/day299.md
How to conduct a basic security code review - Security Simplifiedhttps://github.com/abbycantcode/learn365/blob/main/days/day300.md
How to Analyze Code for Vulnerabilities using Joernhttps://github.com/abbycantcode/learn365/blob/main/days/day301.md
Azure Privilege Escalation via Service Principal Abusehttps://github.com/abbycantcode/learn365/blob/main/days/day302.md
CREATING A MALICIOUS AZURE AD OAUTH2 APPLICATIONhttps://github.com/abbycantcode/learn365/blob/main/days/day303.md
0-Day Hunting (Chaining Bugs/Methodology)https://github.com/abbycantcode/learn365/blob/main/days/day304.md
Discourse SNS webhook RCEhttps://github.com/abbycantcode/learn365/blob/main/days/day305.md
Android Exploits 101 Workshophttps://github.com/abbycantcode/learn365/blob/main/days/day306.md
SHELLS AND SOAP: WEBSPHERE DESERIALIZATION TO RCEhttps://github.com/abbycantcode/learn365/blob/main/days/day307.md
PHP-FPM LOCAL ROOT VULNERABILITYhttps://github.com/abbycantcode/learn365/blob/main/days/day308.md
Support Board 3.3.4 Arbitrary File Deletion to Remote Code Executionhttps://github.com/abbycantcode/learn365/blob/main/days/day309.md
SuDump: Exploiting suid binaries through the kernelhttps://github.com/abbycantcode/learn365/blob/main/days/day310.md
Attacking and Securing CI/CD Pipelinehttps://github.com/abbycantcode/learn365/blob/main/days/day311.md
Exploiting Protobuf Webappshttps://github.com/abbycantcode/learn365/blob/main/days/day312.md
CookieMonsterhttps://github.com/abbycantcode/learn365/blob/main/days/day313.md
Get shells with JET, the Jolokia Exploitation Toolkithttps://github.com/abbycantcode/learn365/blob/main/days/day314.md
Android security checklist: WebViewhttps://github.com/abbycantcode/learn365/blob/main/days/day315.md
5 Ways to Exploit a Domain Takeover Vulnerabilityhttps://github.com/abbycantcode/learn365/blob/main/days/day316.md
Create a proxy DLL with artifact kithttps://github.com/abbycantcode/learn365/blob/main/days/day317.md
How to search for XXE!https://github.com/abbycantcode/learn365/blob/main/days/day318.md
Defeating Android Certificate Pinning with Fridahttps://github.com/abbycantcode/learn365/blob/main/days/day319.md
What can I do with Open Redirect with OAuth?https://github.com/abbycantcode/learn365/blob/main/days/day320.md
Practical HTTP Header Smuggling: Sneaking Past Reverse Proxies to Attack AWS and Beyondhttps://github.com/abbycantcode/learn365/blob/main/days/day321.md
T-Reqs: HTTP Request Smuggling with Differential Fuzzinghttps://github.com/abbycantcode/learn365/blob/main/days/day322.md
ChaosDB Explained: Azure's Cosmos DB Vulnerability Walkthroughhttps://github.com/abbycantcode/learn365/blob/main/days/day323.md
MULTIPLE CONCRETE CMS VULNERABILITIES ( PART1 – RCE )https://github.com/abbycantcode/learn365/blob/main/days/day324.md
Android App Hacking Workshophttps://github.com/abbycantcode/learn365/blob/main/days/day325.md
Secondary Contexts Slideshttps://github.com/abbycantcode/learn365/blob/main/days/day326.md
HTTP/2 request smuggling (explained using beer)https://github.com/abbycantcode/learn365/blob/main/days/day327.md
Scanning for hardcoded secrets in source code - Security Simplifiedhttps://github.com/abbycantcode/learn365/blob/main/days/day328.md
Staying sane in bug bountieshttps://github.com/abbycantcode/learn365/blob/main/days/day329.md
How Your E-book Might Be Reading You: Exploiting EPUB Reading Systemshttps://github.com/abbycantcode/learn365/blob/main/days/day330.md
Attacking SAML implementationshttps://github.com/abbycantcode/learn365/blob/main/days/day331.md
Uniscan: An RFI, LFI, and RCE Vulnerability Scannerhttps://github.com/abbycantcode/learn365/blob/main/days/day332.md
JavaScript type confusion: Bypassed input validation (and how to remediate)https://github.com/abbycantcode/learn365/blob/main/days/day333.md
Multiple Vulnerabilities in ResourceSpacehttps://github.com/abbycantcode/learn365/blob/main/days/day334.md
Unboxing BusyBox – 14 new vulnerabilities uncovered by Claroty and JFroghttps://github.com/abbycantcode/learn365/blob/main/days/day335.md
Zero-Day Disclosure: Palo Alto Networks GlobalProtect VPN CVE-2021-3064https://github.com/abbycantcode/learn365/blob/main/days/day336.md
Simple SSRF Allows Access To Internal Assetshttps://github.com/abbycantcode/learn365/blob/main/days/day337.md
Multiple Resource by XVNPW Bloghttps://github.com/abbycantcode/learn365/blob/main/days/day338.md
WordPress Plugin Confusion: How an update can get you pwnedhttps://github.com/abbycantcode/learn365/blob/main/days/day339.md
RCE with SSRF and File Write as an exploit chain on Apache Guacamolehttps://github.com/abbycantcode/learn365/blob/main/days/day340.md
Grafana CVE-2021-43798https://github.com/abbycantcode/learn365/blob/main/days/day341.md
Data Exfiltration via CSS + SVG Fonthttps://github.com/abbycantcode/learn365/blob/main/days/day342.md
The Pen Testing Tools We’re Thankful for in 2021https://github.com/abbycantcode/learn365/blob/main/days/day343.md
HitCon CTF Challenges by Orangehttps://github.com/abbycantcode/learn365/blob/main/days/day344.md
Random Readingshttps://github.com/abbycantcode/learn365/blob/main/days/day345-363.md
Metasploit Basics for Hackershttps://github.com/abbycantcode/learn365/blob/main/days/day364.md
NCC Group’s Cryptopals Guided Tour!https://github.com/abbycantcode/learn365/blob/main/days/day365.md
Readmehttps://github.com/abbycantcode/learn365#readme-ov-file
Activityhttps://github.com/abbycantcode/learn365/activity
1 starhttps://github.com/abbycantcode/learn365/stargazers
0 watchinghttps://github.com/abbycantcode/learn365/watchers
0 forkshttps://github.com/abbycantcode/learn365/forks
Report repositoryhttps://github.com/contact/report-content?content_url=https%3A%2F%2Fgithub.com%2Fabbycantcode%2Flearn365&report=abbycantcode+%28user%29
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.