PwnSec Notes
search
Ctrlk
  • AppSecchevron-right
    • General Notes
    • Payloads
    • Fuzzing
    • Code Review
    • ReDos
    • SSTI
    • LFI-RFI
    • PHP Tricks
    • Javascript
    • Serialization
    • SQL Injection
    • JWT
    • GraphQL
    • Side Channel
    • Command Execution
    • WebSockets
    • Ruby
    • 0Auth
    • Latex Injection
    • NoSQL
    • JS Analysis
    • Apache Lucene
  • Forensicschevron-right
  • Binary-Exploitationchevron-right
  • Malware-Analysischevron-right
  • Reverse-Engineeringchevron-right
  • Services
    • SNMP
    • Grafana
    • Consul
  • Network Pentesting
    • C2 Servers
    • Pivoting
    • CrackMapExec
    • Kubernetes
    • Docker
  • MISCchevron-right
  • Cloud Hackingchevron-right
  • Mobile Pentestingchevron-right
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. AppSec

Side Channel

hashtag
XSLeak

  • https://xsleaks.dev/arrow-up-right

  • https://www.youtube.com/watch?v=6FTJnThqeN8arrow-up-right

  • Safelist sekai CTF challenge

hashtag
XS-Search

  • https://book.hacktricks.xyz/pentesting-web/xs-searcharrow-up-right

PreviousGraphQLchevron-leftNextCommand Executionchevron-right

Last updated 3 years ago

  • XSLeak
  • XS-Search