Nuevos labs cada semana — Accede a todos desde 5€/mes
Ver labs →Topic index
Temas de la Academy
179 temas indexados, agrupando todos los artículos por categoría de vulnerabilidad o técnica. Cada tema enlaza a su propia página con los artículos que lo cubren.
#xss15#rce8#csrf8#auth7#client-side6#methodology6#ssrf5#injection5#information-disclosure4#recon4#rate-limiting4#oauth4#waf-bypass3#session3#idor3#bug-bounty3#stored-xss3#postmessage3#pii3#bypass3#url-parsing3#open-redirect3#bac2#cloudflare2#exploitation2#http-smuggling2#request-smuggling2#metodologia2#email-normalization2#validation-bypass2#cache-poisoning2#dom-xss2#graphql2#enumeration2#command-injection2#cloud-metadata2#javascript2#php2#csp2#cross-origin2#svg2#sanitizer-bypass2#deserialization2#cors2#browser-security2#csp-bypass2#admin-bypass1#localstorage1#payload-size1#headless-browser1#puppeteer1#desync1#http21#llm1#prompt-injection1#ai-security1#jailbreaks1#nextjs1#middleware-bypass1#rsc1#api-keys1#javascript-recon1#spa1#broken-access-control1#api1#subdomain-enumeration1#tooling1#introduccion1#programas1#access-delegation1#domain-takeover1#account-takeover1#otp1#file-upload1#webshell1#jwt1#crypto1#redirect1#sqli1#database1#oversized-body1#proxy1#sandbox-escape1#python1#iframe1#origin-validation1#zero-click1#platforms1#comparison1#burp-suite1#tools1#setup1#source-maps1#reporting1#writing1#lfi1#path-traversal1#subdomains1#asn1#security-headers1#hsts1#configuration1#pentesting1#services1#2fa1#totp1#account-enumeration1#privacy1#samesite-bypass1#json-csrf1#access-control1#authorization1#password-reset1#puny-code1#race-conditions1#marketplace1#logic-flaws1#business-logic1#payloads1#contexts1#asp-net1#viewstate1#padding-oracle1#cloudfront1#cache-deception1#pii-leak1#exfiltration1#chain1#dom-clobbering1#html-injection1#sources-sinks1#gadgets1#waf1#dos1#body-size1#inspection-bypass1#redirect-uri-bypass1#class-pollution1#android1#intent1#activity-exported1#secondary-context1#double-parsing1#template-injection1#localhost-bypass1#dns-rebinding1#xs-leaks1#timing-attacks1#side-channel1#ato1#escalation1#chains1#encoding1#parser-differential1#cookies1#debug-endpoints1#secrets1#client-side-request1#messaging1#shell1#nosql-injection1#mongodb1#firebase1#url-shortener1#rgpd1#brute-force1#xxe1#xml1#file-read1#mutation-xss1#dompurify1#browser-quirks1#prototype-pollution1#server-side1#reflected-xss1#google-analytics1#rate-limit-page1#ssti1#templates1