wtorek, 23 lipca 2019

piątek, 19 lipca 2019

Protostar CTF - Stack0

I decided to check one old CTF called Protostar (again;)). This time we will try to solve some 'stack challenges'. Let's start from the beginning...

czwartek, 18 lipca 2019

XSS in Zurmo CRM

If you are already familiar with last 2 cases[1, 2] we can run our 'new Burp settings' with 'another webapp'. This time let's try Zurmo CRM. Here we go...

XSS in TestLink 1.9.19

Last time we talked about automating Burp scans to find few more low-hanging fruits during bug hunting. Today we will try to achieve similar results - this time for latest TestLink (1.9.19 available at Bitnami). Here we go...

XSS in DokuWiki

Last time we talked about DokuWiki when I was checking Bitnami resources. Today I decided to try it again but this time I used Burp Proxy to automate the process of finding bugs in webapps. Here we go...