HacktoryOne click for victims, one huge leap for attackersCSRF (Cross-Site Request Forgery, aka one-click attack) is an attack that tricks a web browser into performing an unwanted action within…4 min read·Nov 26, 2020----
HacktoryHow about injecting some SQL?SQL injection is a web security vulnerability, which permits an attacker to disrupt the queries an application sends to its database. An…2 min read·Aug 10, 2020----
HacktoryDot-Dot-Slash And Web App CrashDirectory traversal (or path traversal) is a vulnerability, the exploitation of which enables an attacker to read arbitrary files on an…3 min read·Jul 13, 2020--1--1
HacktoryRemote code execution or how to get your own server for freeCommand injection is a type of vulnerability that enables an adversary to execute arbitrary OS commands on the server through susceptible…4 min read·Jun 4, 2020----
HacktoryHide and seek: How to attack using open access files and directoriesOpen access files and directories stored on an application server are considered one of the most widespread security issues. This is…4 min read·May 27, 2020----