Skip to content

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Notifications You must be signed in to change notification settings

yrahman/PayloadsAllTheThings

Repository files navigation

Payloads All The Things

A list of usefull payloads and bypasses for Web Application Security Feel free to improve with your payloads and techniques ! I <3 pull requests :)

Last modifications :

  • XSS paylods improved
  • CRLF payloads improved
  • SQLi payloads improved
  • Enumeration added (WIP)

TODO : Basic methodology for hunting bugs and vulnerabilities

More resources

Book's list:

About

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages

  • Python 55.5%
  • HTML 39.6%
  • Ruby 3.8%
  • Other 1.1%