offensive-exploit-dev-course

Skill Name: exploit-dev-curriculum Folder: offensive-exploit-dev-course Source: https://github.com/SnailSploit/offensive...

github

offensive-xxe

Skill Name: xxe Folder: offensive-xxe Source: https://github.com/SnailSploit/offensive-checklist/blob/main/xxe.md XML Ex...

github

offensive-xss

Skill Name: xss Folder: offensive-xss Source: https://github.com/SnailSploit/offensive-checklist/blob/main/xss.md Cross-...

github

offensive-waf-bypass

Skill Name: waf-bypass Folder: offensive-waf-bypass Source: https://github.com/SnailSploit/offensive-checklist/blob/main...

github

offensive-ssti

Skill Name: ssti Folder: offensive-ssti Source: https://github.com/SnailSploit/offensive-checklist/blob/main/ssti.md Ser...

github

offensive-sqli

Map all input vectors that reach the database (URL params, POST body, cookies, headers, API filters, WebSocket messages)...

github

offensive-ssrf

Skill Name: ssrf Folder: offensive-ssrf Source: https://github.com/SnailSploit/offensive-checklist/blob/main/ssrf.md Ser...

github

offensive-rce

Skill Name: rce Folder: offensive-rce Source: https://github.com/SnailSploit/offensive-checklist/blob/main/rce.md Remote...

github

offensive-race-condition

Skill Name: race-condition Folder: offensive-race-condition Source: https://github.com/SnailSploit/offensive-checklist/b...

github

offensive-parameter-pollution

Skill Name: parameter-pollution Folder: offensive-parameter-pollution Source: https://github.com/SnailSploit/offensive-c...

github

offensive-open-redirect

Skill Name: open-redirect Folder: offensive-open-redirect Source: https://github.com/SnailSploit/offensive-checklist/blo...

github

offensive-idor

Skill Name: idor Folder: offensive-idor Source: https://github.com/SnailSploit/offensive-checklist/blob/main/idor.md IDO...

github

offensive-file-upload

Skill Name: file-upload Folder: offensive-file-upload Source: https://github.com/SnailSploit/offensive-checklist/blob/ma...

github

offensive-graphql

Skill Name: graphql-security Folder: offensive-graphql Source: https://github.com/SnailSploit/offensive-checklist/blob/m...

github

offensive-business-logic

Business logic flaws are the highest-paying class of vulnerability for bug bounty and the hardest for scanners to detect...

github

offensive-initial-access

Skill Name: initial-access Folder: offensive-initial-access Source: https://github.com/SnailSploit/offensive-checklist/b...

github

offensive-ai-security

Skill Name: ai-security Folder: offensive-ai-security Source: https://github.com/SnailSploit/offensive-checklist/blob/ma...

github

offensive-reporting

A great finding lost in a bad report is a wasted finding. Reports are the artifact the client pays for, the auditor read...

github

offensive-iot

Recon the device physically — identify SoC, flash, debug interfaces, radios Get the firmware — vendor download, OTA capt...

github

offensive-fast-checking

Skill Name: fast-checking Folder: offensive-fast-checking Source: https://github.com/SnailSploit/offensive-checklist/blo...

github

offensive-crash-analysis

Skill Name: crash-analysis Folder: offensive-crash-analysis Source: https://github.com/SnailSploit/offensive-checklist/b...

github

offensive-windows-boundaries

Skill Name: windows-boundaries Folder: offensive-windows-boundaries Source: https://github.com/SnailSploit/offensive-che...

github

offensive-deserialization

Skill Name: insecure-deserialization Folder: offensive-deserialization Source: https://github.com/SnailSploit/offensive-...

github

offensive-mobile

Static: pull the IPA/APK, decompile, dump resources/strings, identify endpoints Dynamic: install on rooted/jailbroken de...

github