Brute Force - DVWA
The goal is to brute force an HTTP login page.
The goal is to brute force an HTTP login page.
Perform command injection using the ping functionality.
Quest: Ensure Access & Identity in Google Cloud
Changing the victim’s password using CSRF.
Trigger an alert pop-up with cookie values using DOM-based XSS.
Read the /etc/passwd file using File Inclusion vulnerability.
Exploit the file upload vulnerability to achieve Remote Code Execution (RCE).
Analyze the JavaScript code to reverse the logic and then submit the word ‘success’ in order to win.
Trigger an alert pop-up with cookie values using Reflected XSS.
Use an SQL injection attack to retrieve the admin password.