2016-10-20 09:54:29 +07:00
|
|
|
# Payloads All The Things
|
2016-10-18 18:36:18 +07:00
|
|
|
A list of usefull payloads and bypasses for Web Application Security
|
2016-10-20 11:02:19 +07:00
|
|
|
Feel free to improve with your payloads (I <3 pull requests) :)
|
2016-10-18 14:06:10 +07:00
|
|
|
|
|
|
|
|
To improve:
|
|
|
|
|
* RCE
|
|
|
|
|
* SQL injection
|
|
|
|
|
* XXE
|
2016-10-18 18:13:23 +07:00
|
|
|
* SSRF
|
2016-10-18 18:36:18 +07:00
|
|
|
* Upload
|
|
|
|
|
* Tar command exec
|
2016-10-19 23:39:07 +07:00
|
|
|
* Traversal Directory
|
|
|
|
|
* XSS
|
2016-10-20 09:39:06 +07:00
|
|
|
* PHP Include
|
2016-10-20 10:50:12 +07:00
|
|
|
* CSV Injection
|
2016-10-20 11:02:19 +07:00
|
|
|
* PHP Serialization
|