Pentesting notes
search
Ctrlk
  • 🏠/home/kabaneridev/.pt-notes
  • πŸ†Certification Preparation
    • βœ…CPTS - Completedchevron-right
    • πŸ“˜CWEE Preparationchevron-right
      • Injection Attackschevron-right
      • Attacking Authentication Mechanismschevron-right
      • Advanced XSS and CSRF Exploitationchevron-right
        • Lab Environment
        • [CSRF Exploitation]chevron-right
        • [XSS Exploitation]chevron-right
          • Introduction
          • Launching Attacks from Victim's Session
          • Enumerating Internal APIs
          • Exploiting Internal Web Apps I
          • Exploiting Internal Web Apps II
          • Content-Security Policy (CSP)
          • Bypassing Weak CSPs
          • XSS Filter Bypasses
          • XSS Prevention
        • Skills Assessment
      • Abusing HTTP Misconfigurationschevron-right
      • HTTP Attackschevron-right
      • HTTPS/TLS Attackschevron-right
      • Blind SQL Injectionchevron-right
      • Whitebox Pentestingchevron-right
      • Modern Web Exploitationchevron-right
      • [Deserialization Attacks]chevron-right
    • βœ…PJPT - Completedchevron-right
  • πŸ”§Core Knowledge Areas
    • πŸ”Information Gatheringchevron-right
    • 🐧Linux Privilege Escalationchevron-right
    • πŸͺŸWindows Privilege Escalationchevron-right
    • πŸ› οΈTools & Utilitieschevron-right
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. πŸ†Certification Preparationchevron-right
  2. πŸ“˜CWEE Preparationchevron-right
  3. Advanced XSS and CSRF Exploitation

[XSS Exploitation]

Introductionchevron-rightLaunching Attacks from Victim's Sessionchevron-rightEnumerating Internal APIschevron-rightExploiting Internal Web Apps Ichevron-rightExploiting Internal Web Apps IIchevron-rightContent-Security Policy (CSP)chevron-rightBypassing Weak CSPschevron-rightXSS Filter Bypasseschevron-rightXSS Preventionchevron-right
PreviousCSRF Preventionchevron-leftNextIntroductionchevron-right

Last updated 2 months ago