Server-Side
- SQL Injection
- SSRF
- XXE Injection
- Path Traversal
- File Upload Vulnerabilities
- NoSQL Injection
- Authentication
- OS Command Injection
- Business Logic Vulnerabilities
- Information Disclosure
- Broken Access Control
- Race Conditions
Client-Side
Advanced Topics
- JWT Attacks
- Insecure Deserialization
- Prototype Pollution
- HTTP Request Smuggling
- Server Side Template Injection
- Open Authentication
- GraphQL
- Host Header Injection
Unfinished
table
from "002 Cyber Security/Port Swigger"
where contains(file.tags, "later")