Categoria Web Shell

Articoli
5+ Note
Focus
OSCP · Red Team
Struttura
Recon → Exploit

Web Shell Articoli

Filtri

  • RCE (Remote Code Execution): Cos’è, Vettori ed Exploit
    web-hacking

    RCE (Remote Code Execution): Cos’è, Vettori ed Exploit

    RCE nel pentesting: scopri i vettori che portano alla Remote Code Execution, come verificarli, ottenere una shell e avviare la post-exploitation.

    Continua a leggere Continua a leggere
  • Misc & Infrastructure Attacks: Subdomain Takeover, Race Condition, Request Smuggling
    web-hacking

    Misc & Infrastructure Attacks: Subdomain Takeover, Race Condition, Request Smuggling

    Guida completa alle vulnerabilità più sottovalutate nel pentesting web: Subdomain Takeover, HTTP Request Smuggling, Race Condition, Deserialization e Cache Poisoning. Tecniche reali, payload e attack chain enterprise.

    Continua a leggere Continua a leggere
  • File Upload Attack: Bypass, Polyglot e Web Shell
    web-hacking

    File Upload Attack: Bypass, Polyglot e Web Shell

    Scopri come sfruttare un file upload attack nel pentesting web: bypass estensione, Content-Type, magic bytes, polyglot e RCE via web shell.

    Continua a leggere Continua a leggere
  • File & Path Attacks: LFI, Upload e Path Traversal
    web-hacking

    File & Path Attacks: LFI, Upload e Path Traversal

    Guida ai file & path attacks nel pentesting web: path traversal, LFI, file upload, web shell, Zip Slip, backup exposure e file read.

    Continua a leggere Continua a leggere
  • Backup Exposure: Dump SQL, .env e ZIP Esposti
    web-hacking

    Backup Exposure: Dump SQL, .env e ZIP Esposti

    Scopri come trovare file backup esposti nel pentesting web: dump SQL, .env, ZIP e config.bak con feroxbuster, ffuf e tecniche reali.

    Continua a leggere Continua a leggere