#Web

12 posts

> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

Cadaver

WebDAV client for uploading and managing files on WebDAV-enabled servers

#webdav#web#file-upload
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

CeWL

Custom wordlist generator that spiders websites to create targeted password lists

#password-cracking#wordlist#web
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

DAVTest

WebDAV exploitation testing tool for checking upload capabilities and file execution

#webdav#web#exploitation
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

Dirsearch

Web path discovery tool for brute-forcing directories and files on web servers

#web#directory-bruteforce#enumeration
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

ffuf

Fast web fuzzer for directory discovery, virtual host enumeration, and parameter fuzzing

#web#directory-bruteforce#fuzzing
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

git-dumper

Tool for dumping exposed .git repositories from web servers

#web#reconnaissance#git
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

Gobuster

Directory and DNS brute-forcing tool for discovering hidden paths and subdomains

#web#directory-bruteforce#enumeration
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

SQLMap

Automated SQL injection detection and exploitation tool for database takeover

#web#sql-injection#exploitation
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

Wfuzz

Web application fuzzer for brute-forcing parameters, directories, and forms

#web#fuzzing#directory-bruteforce
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> Tools
ToolsFebruary 9, 2026

WPScan

WordPress security scanner for enumerating plugins, themes, and user accounts

#web#wordpress#enumeration
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> CTF Writeups
CTF-WriteupsFebruary 2, 2024

Bypass square - Web - NaScon'23

Bypass two preg_match functions to get the flag.

#NaSCon'23#Web#CTF-Walkthrough
> ./exploit.sh
[*] Scanning target...
[+] Vulnerability found
> CTF Writeups
CTF-WriteupsSeptember 9, 2023

Qualifier Web security (El Banco Amarillo) - CyberHackathon'23

#CyberHackathon'23#Web#CTF-Walkthrough