Researcher Resources - Tutorials


#1

This is a list of tutorial resources that can be helpful to security researchers that want to learn more about web and mobile application hacking. Please let us know if you have any suggestions for resources that we should add to this post!

Web applications:

XSS

  • A comprehensive tutorial on cross-site scripting - link
  • Favorite XSS Filters/IDS and how to attack them - pdf link
  • Introduction to cross-site scripting - link
  • Avoiding XSS Detection - link

CSRF

  • Finding and Preventing CSRF - pdf link
  • How to exploit CSRF Vulnerabilities - link

SQL Injection

  • Introduction to SQL Injection - link
  • Introduction to MySQL Injection - link
  • Full MSSQL Injection PWNage - link
  • Everything you wanted to know about SQL injection - link

Remote Code/Command Execution

  • How to find RCE in scripts (with examples)- link
  • Yahoo LFI Converted to RCE - link
  • Remote Code Execution in Elasticsearch - CVE-2015-1427 - link

XXE

  • Generic XXE Detection - link
  • XML Out-Of-Band Data Retrieval - pdf link
  • SSRF vs. Business-critical applications: XXE tunneling in SAP - pdf
    link
  • What you didn’t know about XXE - pdf link

Other:

  • SSRF Attacks - slideshare link
  • Cross Site Port Attacks - link
  • Hunting for Top Bounties - YouTube link
  • How to steal and modify data using Business Logic flaws - slideshare
    link
  • Exploiting CVE-2011-2461 on google.com - link
  • PentesterLab - link - PentesterLab provides vulnerable systems that can be used to test and understand vulnerabilities. (thanks @n0x00)
  • InjectX to find XSS - link - thanks @1N3
  • Attacking Ruby on Rails Applications - link

Mobile Applications:

Android

  • Debugging Java Applications Using JDB - link
  • Hacking Android Apps Using Backup Techniques - link

iOS

  • Setting Up a Mobile Pentesting Platform - link
  • iOS Application Security - link


Researcher Resources - How to become a Bug Bounty Hunter
Tips for Successful Bug Submissions
Can someone please help?
#3

These are pretty good :

PentesterLab is an easy and great way to learn penetration testing.
PentesterLab provides vulnerable systems that can be used to test and understand vulnerabilities.

https://pentesterlab.com/exercises/


#4

Thanks @n0x00! Updated the list :smile:


#5

Here’s a new class from Rensselaer Polytechnic Institute: Modern Binary Exploitation - CSCI 4968


#6

A great resource for toy environments to aggressively evaluate - https://www.vulnhub.com


#8

@joernchen wrote a guide & introduction to Attacking Ruby on Rails applications. Very useful!


#10

Hacksplaining is a great site for beginners and goes into each kind of attack and how they are executed https://www.hacksplaining.com/


#11

here is an another great Blog


#12

I compiled a comprehensive list of deliberately vulnerable websites a while ago so that hackers can practice their skills whilst staying on the right side of the law:

https://www.bonkersabouttech.com/security/40-plus-list-of-intentionally-vulnerable-websites-to-practice-your-hacking-skills/392