OSWE WEB-300 筆記 Part 4,涵蓋 Websocket client、Concord 身份繞過到 RCE、Same-Origin Policy (SOP)、Cross-Origin Resource Sharing (CORS)、SameSite、CORS+CSRF、DatabaseModule API Leak 等等。
Posts for: #Offsec
[OSWE, WEB-300] Instructional notes - Part 3
OSWE WEB-300 筆記 Part 3,涵蓋 Password Reset Vulnerability、XML Parsing、XXE Exploit、Web Shells、openCRX 身份繞過與 RCE、openITCOCKPIT XSS、DOM-based XSS 等等。
[OSWE, WEB-300] Instructional notes - Part 2
OSWE WEB-300 筆記 Part 2,涵蓋 XmlSerializer、DotNetNuke Cookie Deserialization RCE 弱點、SSTI攻擊、ERPNext 身份繞過、ERPNext Authentication Bypass and Server Side Template Injection 等等。
[OSWE, WEB-300] Instructional notes - Part 1
OSWE WEB-300 筆記 Part 1,涵蓋 Managed .NET Code、 Decompiling Java Classes 教學、AMUserResourcesSyncServlet SQL Injection 攻擊、PostgreSQL Extensions 等等。
[AI] Penetration Testing Notes: Recon, Web, Privilege Escalation, AD, and Pivoting
Penetration testing notes by CHW covering reconnaissance, enumeration, web exploitation, privilege escalation, Active Directory, tunneling, and practical labs.
[AI] Red Team Notes: OPSEC, Lateral Movement, AD Persistence, and Operator Workflow
Red team notes by CHW covering OPSEC, lateral movement, Active Directory persistence, credential attacks, pivoting, and operator-focused offensive workflows.