#Web
12 posts
Cadaver
WebDAV client for uploading and managing files on WebDAV-enabled servers
CeWL
Custom wordlist generator that spiders websites to create targeted password lists
DAVTest
WebDAV exploitation testing tool for checking upload capabilities and file execution
Dirsearch
Web path discovery tool for brute-forcing directories and files on web servers
ffuf
Fast web fuzzer for directory discovery, virtual host enumeration, and parameter fuzzing
git-dumper
Tool for dumping exposed .git repositories from web servers
Gobuster
Directory and DNS brute-forcing tool for discovering hidden paths and subdomains
SQLMap
Automated SQL injection detection and exploitation tool for database takeover
Wfuzz
Web application fuzzer for brute-forcing parameters, directories, and forms
WPScan
WordPress security scanner for enumerating plugins, themes, and user accounts
Bypass square - Web - NaScon'23
Bypass two preg_match functions to get the flag.