mirror of
https://github.com/swisskyrepo/PayloadsAllTheThings.git
synced 2026-06-12 19:11:20 -07:00
b44215ef6ecb0ecd2a6ddeea1538fa0ff9af307f
Payloads All The Things
A list of usefull payloads and bypasses for Web Application Security Feel free to improve with your payloads (I <3 pull requests) :)
To improve:
- RCE
- SQL injection
- XXE
- SSRF
- Upload
- Tar command exec
- Traversal Directory
- XSS
- PHP Include
- CSV Injection
- PHP Serialization
Description
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
bountybugbountybypasscheatsheetenumerationhackinghacktoberfestmethodologypayloadpayloadspenetration-testingpentestprivilege-escalationredteamsecurityvulnerabilityweb-application
Readme
MIT
53 MiB
Languages
Python
75.7%
ASP.NET
8.6%
XSLT
5.9%
Classic ASP
3.1%
PHP
3%
Other
3.6%