MyWiki
Search
Search
Dark mode
Light mode
Explorer
Home
❯
Web Security
Web Security
40 items under this folder.
Jun 06, 2025
Authorization Bypass
owasp
bypass
access_control
Jun 06, 2025
Broken Access Control
owasp
access_control
rbac
Jun 06, 2025
CAPTCHA Bypass
owasp
captcha
bypass
authentication
automated_attacks
Jun 06, 2025
Code Injection
owasp
code_injection
injection
remote_code_execution
Jun 06, 2025
Cookie Flags - Security Configuration
owasp
cookies
httponly
secure
samesite
security_misconfiguration
Jun 06, 2025
Cryptographic Failures
owasp
cryptographic_failures
encryption
data_protection
tls
ssl
Jun 06, 2025
Data Tampering
owasp
data_tampering
integrity
validation
server_side_validation
Jun 06, 2025
Default Configurations - Security Risk
owasp
default_configurations
security_misconfiguration
hardening
default_credentials
Jun 06, 2025
Directory Traversal (Path Traversal)
owasp
directory_traversal
path_traversal
file_inclusion
injection
Jun 06, 2025
DOM-based Cross-Site Scripting (XSS)
owasp
dom_based_xss
xss
injection
client_side
Jun 06, 2025
Denial of Service (DoS) Attacks
owasp
dos
ddos
availability
rate_limiting
Jun 06, 2025
HTTP Strict Transport Security (HSTS)
owasp
hsts
tls
ssl
cryptographic_failures
Jun 06, 2025
HTTP Security Headers
owasp
http_headers
security_headers
security_misconfiguration
hsts
csp
xss
Jun 06, 2025
IIS Tilde Enumeration
owasp
iis
tilde_enumeration
information_disclosure
directory_enumeration
microsoft_iis
Jun 06, 2025
Injection Attacks
owasp
injection
vulnerabilities
sql_injection
xss
command_injection
xxe
Jun 06, 2025
Insecure Design
owasp
insecure_design
vulnerabilities
architecture
threat_modeling
secure_development
Jun 06, 2025
Insecure Direct Object References (IDOR)
owasp
idor
access_control
authorization
Jun 06, 2025
Insufficient Logging and Monitoring
owasp
logging
monitoring
incident_response
audit_trails
siem
Jun 06, 2025
Lack of Brute Force Protection
owasp
brute_force
protection
authentication
rate_limiting
account_lockout
Jun 06, 2025
Lack of Rate Limiting
owasp
rate_limiting
brute_force
dos
authentication
Jun 06, 2025
Local File Inclusion (LFI)
owasp
lfi
injection
file_inclusion
path_traversal
Jun 06, 2025
Reflected Cross-Site Scripting (XSS)
owasp
xss
reflected_xss
injection
Jun 06, 2025
Security Logging and Monitoring Failures
owasp
logging
monitoring
incident_response
siem
audit_trails
Jun 06, 2025
Security Misconfiguration
owasp
security_misconfiguration
configuration
server_hardening
default_credentials
Jun 06, 2025
Sensitive Data Exposure
owasp
sensitive_data_exposure
encryption
cryptographic_failures
data_protection
tls
ssl
Jun 06, 2025
Server Fingerprinting
owasp
server_fingerprinting
information_disclosure
reconnaissance
security_misconfiguration
Jun 06, 2025
Session Fixation
owasp
session_fixation
web_vulnerability
session_management
authentication
Jun 06, 2025
Software and Data Integrity Failures
owasp
software_integrity
data_integrity
supply_chain_attacks
ci_cd_security
digital_signatures
Jun 06, 2025
SQL Injection
owasp
sql_injection
database_vulnerability
Jun 06, 2025
SSL/TLS Misconfiguration
owasp
ssl
tls
misconfiguration
cryptographic_failures
encryption
Jun 06, 2025
Server-Side Request Forgery (SSRF) - Detailed Analysis
owasp
ssrf
server_side_request_forgery
injection
cloud_security
internal_network
Jun 06, 2025
SSRF on AWS - Cloud Metadata Attacks
owasp
ssrf
aws
cloud_security
metadata_service
imds
server_side_request_forgery
Jun 06, 2025
Server-Side Request Forgery (SSRF)
owasp
ssrf
server_side_request_forgery
injection
Jun 06, 2025
Stack Traces - Information Disclosure
owasp
stack_traces
error_handling
information_disclosure
verbose_errors
security_misconfiguration
Jun 06, 2025
Stored Cross-Site Scripting (XSS)
owasp
xss
stored_xss
injection
Jun 06, 2025
Username Enumeration
owasp
username_enumeration
authentication
reconnaissance
information_disclosure
Jun 06, 2025
Verbose Error Messages
owasp
verbose_error_messages
information_disclosure
error_handling
security_misconfiguration
Jun 06, 2025
Vulnerable and Outdated Components
owasp
vulnerable_components
software
dependencies
cve
third_party_libraries
outdated_software
Jun 06, 2025
Weak Password Policy
owasp
weak_password_policy
authentication
password_security
brute_force
credential_attacks
Jun 06, 2025
XML External Entity (XXE) Injection
owasp
xml
xxe
injection
file_inclusion
xml_injection