Untitled
- SNI Injection
- Zip Bomb
- Client-Side Desync Attack CSD Attack
- Subdomain Takeover
- ORM Injection
- GraphQL Injection
- Insecure File Upload
- File Inclusion LFI & RFI
- OGNL Injection Object-Graph Navigation Language Injection
- EL Injection Expression Language Injection
- NoSQL Injection
- CSS Injection
- Email Injection SMTP Injection & Mail Injection
- Github-Action Injection
- XS-Leaks
- Type Juggling Loose Comparison Bug
- SAML Injection
- IDOR Attack Insecure Direct Object Reference
- Prototype Pollution
- Brute Force
- XSHM Attack Cross Site History Manipulation
- LaTex Injection
- Log Injection
- Regex Injection
- ReDOS Attack Regex DOS
- Server-Side Javascript Injection SSJI Attack
- Relative Path Overwrite RPO Attack
- Insecure Deserialization
- XXE XML External Entity
- ESI Injection Edge Side Include Injection
- CSTI Attack Client-Side Template Injection
- Dependency Confusion
- SSTI Attack Server-Side Template Injection
- Web Cache Deception
- RFD Attack Remote File Download
- Web Cache Poisoning
- Click Jacking
- LDAP Injection
- SQL Injection
- Cookie Bomb Attack
- XST Cross-Site Tracing
- DOM Clobbering
- Zip Slip
- HTTP Parameter Pollution HPP Attack
- Open Redirect
- Command Injection
- Path Traversal (Directory traversal)
- CSV Injection
- CRLF Injection
- JSONP Hijacking
- JSON Hijacking
- CSWSH Attack Cross-Site WebSocket Hijacking
- Reverse Tabnabbing
- Websocket Connection Smuggling WCS Attack
- H2C Smuggling
- SSRF Server-Side Request Forgery
- XSS Cross-Site Scripting
- CSRF Cross-Site Request Forgery
- HTTP Request Smuggling HRS Attack