Web-foo

From Chaosdorf Wiki
Revision as of 11:28, 3 January 2023 by Cyaniccerulean (talk | contribs) (Updating organizer, description)

An event focused on web security. Every week, we work our way through the PortSwigger Academy topics list and (try to) solve a few labs! The event currently only happens in person and mostly in German, but we will accommodate any requests for English.

If you want to reach out, have ideas for topics or questions around the event, feel free ping cyaniccerulean.

Here's a list of all the events giving you a brief idea on what we're doing:

 Has description
Web-foo/2022-08-18Web Basics
Web-foo/2022-08-24SQLi
Web-foo/2022-08-31XSS
Web-foo/2022-09-07CSRF
Web-foo/2022-09-14DOM based vulnerabilities
Web-foo/2022-09-21CORS
Web-foo/2022-09-28XXE
Web-foo/2022-10-05SSRF
Web-foo/2022-10-12HTTP request smuggling
Web-foo/2022-10-19OS injection
Web-foo/2022-10-26Server Side Template Injection
Web-foo/2022-11-02Directory Traversal
Web-foo/2022-11-09Access control vulnerabilities
Web-foo/2022-11-16Authentication vulnerabilities
Web-foo/2022-11-23Authentication Vulnerabilities
Web-foo/2022-11-30Authentication Vulnerabilities
Web-foo/2022-12-07Authentication Vulnerabilities
Web-foo/2022-12-14Authentication Vulnerabilities
Web-foo/2022-12-21Business logic vulnerabilities
Web-foo/2023-01-04Web Sockets
Web-foo/2023-01-11Web Cache Poisoning
Web-foo/2023-01-18Insecure Deserialization
Web-foo/2023-01-25Insecure Deserialization
Web-foo/2023-02-01HTTP Host Header Attacks
Web-foo/2023-02-08Information Disclosure Vulnerabilities
Web-foo/2023-02-15File Upload Vulnerabilities
Web-foo/2023-02-22Clickjacking

other topics

  • JWT
  • GraphQL
  • Prototype Pollution

(add topics at the bottom of the list)