{"version":1,"pages":[{"id":"0bTXoKtHWd8liVPc3Sy2","title":"oscp-cpts-notes","pathname":"/","siteSpaceId":"sitesp_YrpPa","emoji":"1f6e1","description":""},{"id":"4MSVspX4ByOmKOmClXCY","title":"Pivoting & Tunneling","pathname":"/pivoting-and-tunneling","siteSpaceId":"sitesp_YrpPa"},{"id":"EUnqcYQqqt6FzoyXvOIA","title":"Local Port Forwarding","pathname":"/pivoting-and-tunneling/local-port-forwarding","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Pivoting & Tunneling"}]},{"id":"exai7Iqy2TofqIzEKLUP","title":"Remote Port Forwarding","pathname":"/pivoting-and-tunneling/remote-port-forwarding","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Pivoting & Tunneling"}]},{"id":"EId4HpdiFbm00gmALiAC","title":"Dynamic Port Forwarding","pathname":"/pivoting-and-tunneling/dynamic-port-forwarding","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Pivoting & Tunneling"}]},{"id":"jI4YxVfxbtO0c9CGwibY","title":"Ligolo-ng","pathname":"/pivoting-and-tunneling/ligolo-ng","siteSpaceId":"sitesp_YrpPa","description":"","breadcrumbs":[{"label":"Pivoting & Tunneling"}]},{"id":"V7vgrO5Rcv6o7d8Jpq63","title":"Linux Privilege Escalation","pathname":"/linux-privilege-escalation","siteSpaceId":"sitesp_YrpPa","description":"We assume that we now have a shell on the remote system. However, depending on how access was obtained, we may not yet have 'root' privileges. The following techniques can be used to elevate privilege"},{"id":"N3pUuR9xeigT4U8RVHGa","title":"Gathering Information of the System","pathname":"/linux-privilege-escalation/gathering-information-of-the-system","siteSpaceId":"sitesp_YrpPa","description":"","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"7m0xyrzFSa3NrubU7EP4","title":"Capabilities","pathname":"/linux-privilege-escalation/capabilities","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"9giFGdIHFQLPxZVhFj0m","title":"Group Based","pathname":"/linux-privilege-escalation/group-based","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"ZuvaPP4xfHRZEK3NxoUp","title":"SUID Privilege Escalation","pathname":"/linux-privilege-escalation/suid-privilege-escalation","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"xTOMp4tHc0lnWNtGqhmw","title":"Cron Job","pathname":"/linux-privilege-escalation/cron-job","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"OpJ2FEA1W9deW6OKuOEF","title":"Exploiting NFS weak Permission","pathname":"/linux-privilege-escalation/exploiting-nfs-weak-permission","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"0nqhBRIsGWEXQPEViaEs","title":"Sudo + LD_PRELOAD (Shared Libraries)","pathname":"/linux-privilege-escalation/sudo-+-ld_preload-shared-libraries","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"LPkkr0hYEDnzefLtk0gU","title":"Shared Object Manipulation","pathname":"/linux-privilege-escalation/shared-object-manipulation","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"6S5uEkU6cJLz3ceZ3Oyz","title":"Python Library Hijacking","pathname":"/linux-privilege-escalation/python-library-hijacking","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Linux Privilege Escalation"}]},{"id":"rlh8gsgeDCtJ8u5P6GWV","title":"Windows Privilege Escalation","pathname":"/windows-privilege-escalation","siteSpaceId":"sitesp_YrpPa"},{"id":"TDhmwfgrjCfJI4mlPn30","title":"Gathering Information of the System","pathname":"/windows-privilege-escalation/gathering-information-of-the-system","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"}]},{"id":"gkbChgxIOZSPWJIm7Fvw","title":"User Privileges","pathname":"/windows-privilege-escalation/user-privileges","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"}]},{"id":"RLMOAPVFwVqVBRPevOW1","title":"SeImpersonatePrivilege and SeAssignPrimaryToken","pathname":"/windows-privilege-escalation/user-privileges/seimpersonateprivilege-and-seassignprimarytoken","siteSpaceId":"sitesp_YrpPa","description":"","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"User Privileges"}]},{"id":"bKBL8mThX5Pgmr8dWGrv","title":"SeDebugPrivilege","pathname":"/windows-privilege-escalation/user-privileges/sedebugprivilege","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"User Privileges"}]},{"id":"EpAMpCmzVhWN7npVQIin","title":"SeTakeOwnershipPrivilege","pathname":"/windows-privilege-escalation/user-privileges/setakeownershipprivilege","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"User Privileges"}]},{"id":"MiYLUbRlZcn9Q4Ki3a5n","title":"Group Privileges","pathname":"/windows-privilege-escalation/group-privileges","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"}]},{"id":"Xs4gJY0NhGPOYA9oM3Gc","title":"Backup Operators","pathname":"/windows-privilege-escalation/group-privileges/backup-operators","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"WBq2PepEO5MZEpSB27t2","title":"DnsAdmins","pathname":"/windows-privilege-escalation/group-privileges/dnsadmins","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"SfdzsV4sMIwZyxw3pJjt","title":"Server Operators","pathname":"/windows-privilege-escalation/group-privileges/server-operators","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"2vBSJDNbw5cP76uO3XrA","title":"Always Install Elevated","pathname":"/windows-privilege-escalation/group-privileges/always-install-elevated","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"5NOyDs7ngknpHzQAeJfc","title":"Print Operators","pathname":"/windows-privilege-escalation/group-privileges/print-operators","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"fwcanpTKbuYO8nJT7THC","title":"Event Log Readers","pathname":"/windows-privilege-escalation/group-privileges/event-log-readers","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"bPyyXme5FCtU9WwTkMFX","title":"Hyper-V Administrators","pathname":"/windows-privilege-escalation/group-privileges/hyper-v-administrators","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"},{"label":"Group Privileges"}]},{"id":"DOwXa3v3QSlksD5y6Wf9","title":"Credential Theft","pathname":"/windows-privilege-escalation/credential-theft","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Windows Privilege Escalation"}]},{"id":"vtFvYFHCVj3BachCUrzi","title":"Active Directory Attacks","pathname":"/active-directory-attacks","siteSpaceId":"sitesp_YrpPa"},{"id":"lj5SpM9pw0o1RyfJaL6F","title":"Enumeration","pathname":"/active-directory-attacks/enumeration","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"m1Z4wVIcHASkSYvcP2RY","title":"Initial Foothold","pathname":"/active-directory-attacks/initial-foothold","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"bpUnjIhqId34ujwXg4RF","title":"Gathering Users & Password Policies","pathname":"/active-directory-attacks/gathering-users-and-password-policies","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"2lZFVR8lajiB68RtimBi","title":"Password Spraying","pathname":"/active-directory-attacks/password-spraying","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"6zX7jZhmxIHYxtmASSjn","title":"Credentialed Enumeration From Linux","pathname":"/active-directory-attacks/credentialed-enumeration-from-linux","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"LBBPNdEZpClK9I9cwaTb","title":"Credentialed Enumeration From Windows","pathname":"/active-directory-attacks/credentialed-enumeration-from-windows","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"otMYjUNSyoa25vkevIxc","title":"Kerberoasting - From Linux","pathname":"/active-directory-attacks/kerberoasting-from-linux","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"Fbsu3fnnJBg5sSJxDPKv","title":"Kerberoasting - From Windows","pathname":"/active-directory-attacks/kerberoasting-from-windows","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Active Directory Attacks"}]},{"id":"gmdAukEFg9WAiBDcXgnm","title":"RED TEAMING","pathname":"/beyond-oscp-cpts/red-teaming","siteSpaceId":"sitesp_YrpPa","description":"Contains Notes from TryHackMe Read Team Path.","breadcrumbs":[{"label":"Beyond OSCP - CPTS"}]},{"id":"LIPnuhj9HLre9jQbyGof","title":"Windows Local Persistence","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"}]},{"id":"smdn6KUmPhcq2UXJ572U","title":"Tampering With Unprivileged Accounts","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/tampering-with-unprivileged-accounts","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"BPeKD47MWbQxpwPbBLMZ","title":"Backdooring Files","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/backdooring-files","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"IREBc1oA3yPIGaEvq6RR","title":"Abusing Services","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/abusing-services","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"SbvLabHzmBguhMMPOOqz","title":"Abusing Scheduled Tasks","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/abusing-scheduled-tasks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"CcK1SalGLawdw53OhEMt","title":"Logon Triggered Persistence","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/logon-triggered-persistence","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"m6eH2DN9vTb17OKHGrAp","title":"Backdooring the Login Screen / RDP","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/backdooring-the-login-screen-rdp","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"NjW7Razx22qdnoNYG5Os","title":"Persisting Through Existing Services","pathname":"/beyond-oscp-cpts/red-teaming/windows-local-persistence/persisting-through-existing-services","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Beyond OSCP - CPTS"},{"label":"RED TEAMING"},{"label":"Windows Local Persistence"}]},{"id":"DDGDcyvahN8ObUdAc73h","title":"BugForge","pathname":"/web-application-pentest/bugforge","siteSpaceId":"sitesp_YrpPa","description":"Contains writeup for various BugForge labs.","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"eHEZE90b46uDQOCq0T1q","title":"SQL Injection (SQLi)","pathname":"/web-application-pentest/bugforge/sql-injection-sqli","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"7uHPaD7HmDE95AAawZuZ","title":"Cheesy Does It","pathname":"/web-application-pentest/bugforge/sql-injection-sqli/cheesy-does-it","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SQL Injection (SQLi)"}]},{"id":"bQ3EJF7jWjLp6xmQUbZQ","title":"Ottergram","pathname":"/web-application-pentest/bugforge/sql-injection-sqli/ottergram","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SQL Injection (SQLi)"}]},{"id":"rQpovNg1hR9Hm4hxRWQW","title":"CopyPasta","pathname":"/web-application-pentest/bugforge/sql-injection-sqli/copypasta","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SQL Injection (SQLi)"}]},{"id":"6K1F9aUaksFeXDuZV8MQ","title":"Sokudo - sokudo-004","pathname":"/web-application-pentest/bugforge/sql-injection-sqli/sokudo-sokudo-004","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SQL Injection (SQLi)"}]},{"id":"KW6lePiiq2J7DPrJhL6x","title":"Shady Oaks Financial  - shadyoaks-005","pathname":"/web-application-pentest/bugforge/sql-injection-sqli/shady-oaks-financial-shadyoaks-005","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SQL Injection (SQLi)"}]},{"id":"hHGSZZJuHwJ7EPVmMGJ9","title":"Business Logic Flaw","pathname":"/web-application-pentest/bugforge/business-logic-flaw","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"tPpcgk4dlGNZuQL29H18","title":"Cheesy Does It","pathname":"/web-application-pentest/bugforge/business-logic-flaw/cheesy-does-it","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Business Logic Flaw"}]},{"id":"ky4q7UkCaTDHnbmNWE1G","title":"Cafe Club","pathname":"/web-application-pentest/bugforge/business-logic-flaw/cafe-club","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Business Logic Flaw"}]},{"id":"Xjlfu0bNxY7IO2GH5jbB","title":"Cheesy Does It","pathname":"/web-application-pentest/bugforge/business-logic-flaw/cheesy-does-it-1","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Business Logic Flaw"}]},{"id":"6J1JSW0OrgzOI2D84Sye","title":"Sokudo","pathname":"/web-application-pentest/bugforge/business-logic-flaw/sokudo","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Business Logic Flaw"}]},{"id":"HfCZuUGLeVGgCDxD6anX","title":"Cheesy Does It  (forgot_password flaw)","pathname":"/web-application-pentest/bugforge/business-logic-flaw/cheesy-does-it-forgot_password-flaw","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Business Logic Flaw"}]},{"id":"iJM87ltUkn5K3smuW7sT","title":"IDOR - Insecure Direct Object Reference","pathname":"/web-application-pentest/bugforge/idor-insecure-direct-object-reference","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"iauMA37L61SzSE5tREBH","title":"Tanuki","pathname":"/web-application-pentest/bugforge/idor-insecure-direct-object-reference/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"IDOR - Insecure Direct Object Reference"}]},{"id":"S39CQPTGUJXr50eb9iGd","title":"Tanuki - 2","pathname":"/web-application-pentest/bugforge/idor-insecure-direct-object-reference/tanuki-2","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"IDOR - Insecure Direct Object Reference"}]},{"id":"BU6O0P2UL8GZllyVbMep","title":"CopyPasta","pathname":"/web-application-pentest/bugforge/idor-insecure-direct-object-reference/copypasta","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"IDOR - Insecure Direct Object Reference"}]},{"id":"9j2l2W0gVaEZ0A038Ejk","title":"CopyPaste - Slug","pathname":"/web-application-pentest/bugforge/idor-insecure-direct-object-reference/copypaste-slug","siteSpaceId":"sitesp_YrpPa","description":"CopyPasta IDOR via Collection Slug Enumeration","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"IDOR - Insecure Direct Object Reference"}]},{"id":"PrGDCojhxrR4cicwsoHO","title":"Broken Access Control","pathname":"/web-application-pentest/bugforge/broken-access-control","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"1wTAqcroq5ao49QhXGYX","title":"Tanuki","pathname":"/web-application-pentest/bugforge/broken-access-control/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Broken Access Control"}]},{"id":"mXnZLn55es7lKhiGOZQJ","title":"Cheesy Does It","pathname":"/web-application-pentest/bugforge/broken-access-control/cheesy-does-it","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Broken Access Control"}]},{"id":"8gZ149tJ5vhLPanCBCkj","title":"CopyPasta","pathname":"/web-application-pentest/bugforge/broken-access-control/copypasta","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Broken Access Control"}]},{"id":"4z3zeccZbtEompgGNFpG","title":"Ottergram","pathname":"/web-application-pentest/bugforge/broken-access-control/ottergram","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Broken Access Control"}]},{"id":"ZFWpq7EsZKPnXbyMZ1Zo","title":"Vaultly - vaultly-002","pathname":"/web-application-pentest/bugforge/broken-access-control/vaultly-vaultly-002","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Broken Access Control"}]},{"id":"TZzH4hkRmlnu1QQpAdFr","title":"Local File Inclusion (LFI)","pathname":"/web-application-pentest/bugforge/local-file-inclusion-lfi","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"sAAteBHFa5Tg8CcazXIC","title":"Cafe Club","pathname":"/web-application-pentest/bugforge/local-file-inclusion-lfi/cafe-club","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Local File Inclusion (LFI)"}]},{"id":"Du2IazPGJvnlJ9AvmZ8V","title":"SSRF (Server-Side Request Forgery)","pathname":"/web-application-pentest/bugforge/ssrf-server-side-request-forgery","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"ZCnjBJLXeACxztLJP96o","title":"Tanuki","pathname":"/web-application-pentest/bugforge/ssrf-server-side-request-forgery/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"SSRF (Server-Side Request Forgery)"}]},{"id":"DQmkNBIoYCx8AEev15LX","title":"JWT None Algorithm Attack","pathname":"/web-application-pentest/bugforge/jwt-none-algorithm-attack","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"lE8eVc5V3ByGruUexH5E","title":"Shady Oaks Financial","pathname":"/web-application-pentest/bugforge/jwt-none-algorithm-attack/shady-oaks-financial","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"JWT None Algorithm Attack"}]},{"id":"qAGwuqpxdA1FO8cpPXmU","title":"Tanuki","pathname":"/web-application-pentest/bugforge/jwt-none-algorithm-attack/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"JWT None Algorithm Attack"}]},{"id":"MFHFvLupVHpsGxvGtNq8","title":"Mass Assignment","pathname":"/web-application-pentest/bugforge/mass-assignment","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"jc0gBOntsWFcu29xqwpV","title":"Tanuki","pathname":"/web-application-pentest/bugforge/mass-assignment/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Mass Assignment"}]},{"id":"3sm82xtYuhyjtP8RgAll","title":"GraphQL IDOR","pathname":"/web-application-pentest/bugforge/graphql-idor","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"9LdxaDmo0rzMBbQkCIhr","title":"Ottergram","pathname":"/web-application-pentest/bugforge/graphql-idor/ottergram","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"GraphQL IDOR"}]},{"id":"ElbYVVPsdmgXTXMb66gh","title":"XXE","pathname":"/web-application-pentest/bugforge/xxe","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"tg3G4ne0FWKKmwjHAyz1","title":"Tanuki","pathname":"/web-application-pentest/bugforge/xxe/tanuki","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"XXE"}]},{"id":"BvGN6sMv11IUHIw4QB1u","title":"Race Condition","pathname":"/web-application-pentest/bugforge/race-condition","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"h1PygOwN1eu1xMHEJVCj","title":"Shady Oaks Financial","pathname":"/web-application-pentest/bugforge/race-condition/shady-oaks-financial","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"Race Condition"}]},{"id":"JiNiLf480qAxDPsJxhQt","title":"JWT Secret Key Brute-Forcing","pathname":"/web-application-pentest/bugforge/jwt-secret-key-brute-forcing","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"}]},{"id":"lSECFRTY0v5IwfvWYPA7","title":"Cheesy Does it - cheesy-007","pathname":"/web-application-pentest/bugforge/jwt-secret-key-brute-forcing/cheesy-does-it-cheesy-007","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"BugForge"},{"label":"JWT Secret Key Brute-Forcing"}]},{"id":"UBfFIoRXkKMSNJigBOoF","title":"OAuth Attacks","pathname":"/web-application-pentest/oauth-attacks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"eATsl4TD7gWjGnLQ10cK","title":"OAuth Grant Types","pathname":"/web-application-pentest/oauth-attacks/oauth-grant-types","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"}]},{"id":"8NJX4cdVV2JGkmIq98b4","title":"OpenID Connect","pathname":"/web-application-pentest/oauth-attacks/openid-connect","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"}]},{"id":"b77uJrHoRfXWnhG224Am","title":"OAuth Attacks (Labs: Portswigger Academy)","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"}]},{"id":"rjeP8ip6a2DMorpNuUw3","title":"Lab 1  Authentication bypass via OAuth implicit flow","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-1-authentication-bypass-via-oauth-implicit-flow","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"bbp7MfuPMMEnEbs81Co7","title":"Lab 2 Forced OAuth profile linking","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-2-forced-oauth-profile-linking","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"YIxXQYqbdXpQsEDW5yXC","title":"Lab 3 OAuth account hijacking via redirect_uri","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-3-oauth-account-hijacking-via-redirect_uri","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"9fcVMCQgdvUQoboLzUk7","title":"Lab 4 Stealing OAuth access tokens via an open redirect","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-4-stealing-oauth-access-tokens-via-an-open-redirect","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"730oHyt89sPZQN5PfQyU","title":"Lab 5 Stealing OAuth access tokens via a proxy page","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-5-stealing-oauth-access-tokens-via-a-proxy-page","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"sf8UknaVXuBaEI5WjkpZ","title":"Lab 6 SSRF via OpenID dynamic client registration","pathname":"/web-application-pentest/oauth-attacks/oauth-attacks-labs-portswigger-academy/lab-6-ssrf-via-openid-dynamic-client-registration","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"OAuth Attacks"},{"label":"OAuth Attacks (Labs: Portswigger Academy)"}]},{"id":"XQpEVdt1E0ALyTzb9pRI","title":"JWT ATTACKS","pathname":"/web-application-pentest/jwt-attacks","siteSpaceId":"sitesp_YrpPa","description":"Overview of JWT and JWT attacks","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"TxRmPKONCcRBB7hyquoJ","title":"JWT Signature Verification Bypass","pathname":"/web-application-pentest/jwt-attacks/jwt-signature-verification-bypass","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"kQW6nGyXqSqWYRw7ow9M","title":"JWT Accepting Unsigned Tokens (alg: none)","pathname":"/web-application-pentest/jwt-attacks/jwt-accepting-unsigned-tokens-alg-none","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"RIiad14nNjnQn7we1fNq","title":"JWT Brute-forcing secret keys (weak signing key)","pathname":"/web-application-pentest/jwt-attacks/jwt-brute-forcing-secret-keys-weak-signing-key","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"EMDdp848e9vv7aCy81gN","title":"JWT header parameter injections (jwk injection)","pathname":"/web-application-pentest/jwt-attacks/jwt-header-parameter-injections-jwk-injection","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"dVb7a0tYy2Wai9IfnxsS","title":"JWT header parameter injections (jku injection)","pathname":"/web-application-pentest/jwt-attacks/jwt-header-parameter-injections-jku-injection","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"3oNQqHPwEjhkKrjb1adi","title":"JWT algorithm confusion Vulnerabilities","pathname":"/web-application-pentest/jwt-attacks/jwt-algorithm-confusion-vulnerabilities","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"Ftk2fOgSuuaEAF1hhOu6","title":"JWT ATTACK Labs","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"}]},{"id":"c635kQueuEHthscbCCKN","title":"Lab 1 JWT authentication bypass via unverified signature","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-1-jwt-authentication-bypass-via-unverified-signature","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"TMgwCgryS2rCDxra9Ir0","title":"Lab 2 JWT authentication bypass via flawed signature verification","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-2-jwt-authentication-bypass-via-flawed-signature-verification","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"UXp8mEWEnZpmaR9ygk6W","title":"Lab 3 JWT authentication bypass via weak signing key","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-3-jwt-authentication-bypass-via-weak-signing-key","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"6LEoEV2FaKba0qqAc5xu","title":"Lab 4 JWT authentication bypass via jwk header injection","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-4-jwt-authentication-bypass-via-jwk-header-injection","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"zzPrwFlvpzw3grl9aZSz","title":"Lab 5 JWT authentication bypass via jku header injection","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-5-jwt-authentication-bypass-via-jku-header-injection","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"OcmUxn0BkWwu37dITxDl","title":"Lab 6 JWT authentication bypass via kid header path traversal","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-6-jwt-authentication-bypass-via-kid-header-path-traversal","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"84omwsB59GLzK1nnuMtd","title":"Lab 7 JWT authentication bypass via algorithm confusion","pathname":"/web-application-pentest/jwt-attacks/jwt-attack-labs/lab-7-jwt-authentication-bypass-via-algorithm-confusion","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"JWT ATTACKS"},{"label":"JWT ATTACK Labs"}]},{"id":"chMkjN6Ys9L2zZYjbdwl","title":"Authentication Attacks","pathname":"/web-application-pentest/authentication-attacks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"bJbCqFWOOXx93hY5W8z5","title":"Authentication Attacks LABS (Portswigger Academy)","pathname":"/web-application-pentest/authentication-attacks/authentication-attacks-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Authentication Attacks"}]},{"id":"EaKY6H8f4zI5nvlbsN2o","title":"Business Logic Vulnerability","pathname":"/web-application-pentest/business-logic-vulnerability","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"5lODxvaNuRaPHngFjSg3","title":"Business Logic Vulnerability (Labs: Portswigger Academy)","pathname":"/web-application-pentest/business-logic-vulnerability/business-logic-vulnerability-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Business Logic Vulnerability"}]},{"id":"17Qbt10HPFlY8lIzlidP","title":"Information Disclosure","pathname":"/web-application-pentest/information-disclosure","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"Z7pCv5tAHKlTAREZHNEo","title":"Infromation Disclosure (Labs: Portswigger Academy)","pathname":"/web-application-pentest/information-disclosure/infromation-disclosure-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Information Disclosure"}]},{"id":"yuNArQ7dT3terDlzGbJz","title":"Race Conditions","pathname":"/web-application-pentest/race-conditions","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"FTfuXuhMEr0TzkICFT4L","title":"Race Conditions (Labs: Portswigger Academy)","pathname":"/web-application-pentest/race-conditions/race-conditions-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Race Conditions"}]},{"id":"eOijZSNJkOItHe1LzVOk","title":"Access Control Vulnerabilities","pathname":"/web-application-pentest/access-control-vulnerabilities","siteSpaceId":"sitesp_YrpPa","description":"","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"I21btnYN4Hl4oErotIJ5","title":"Access Control Vulnerabilities (Labs: PortSwigger Academy)","pathname":"/web-application-pentest/access-control-vulnerabilities/access-control-vulnerabilities-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Access Control Vulnerabilities"}]},{"id":"jp6hu5wQsdYnFBcw5spk","title":"SSRF - Server Side Request Forgery Attacks","pathname":"/web-application-pentest/ssrf-server-side-request-forgery-attacks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"jVlV2VguIhrISaoORslf","title":"SSRF (Labs: Portswigger Academy)","pathname":"/web-application-pentest/ssrf-server-side-request-forgery-attacks/ssrf-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"SSRF - Server Side Request Forgery Attacks"}]},{"id":"8EZ4h63v8MoKoIuhWUIi","title":"CSRF - Cross Site Request Forgery Attacks","pathname":"/web-application-pentest/csrf-cross-site-request-forgery-attacks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"3o7CUxRHAjR5NMddhMt4","title":"CSRF Attacks (Labs: PortSwigger Academy)","pathname":"/web-application-pentest/csrf-cross-site-request-forgery-attacks/csrf-attacks-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"CSRF - Cross Site Request Forgery Attacks"}]},{"id":"kfMvWgWczLLLJopQmQek","title":"CORS - Cross-Origin Resource Sharing Attacks","pathname":"/web-application-pentest/cors-cross-origin-resource-sharing-attacks","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"AiK8tuATdvXME6QMLEXY","title":"CORS - Cross-Origin Resource Sharing (Labs: Portswigger Academy)","pathname":"/web-application-pentest/cors-cross-origin-resource-sharing-attacks/cors-cross-origin-resource-sharing-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"CORS - Cross-Origin Resource Sharing Attacks"}]},{"id":"R6OtWMiXIPqehHhRYIN6","title":"Cross-Site Scripting (XSS)","pathname":"/web-application-pentest/cross-site-scripting-xss","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"}]},{"id":"u3iC5UFBUKIbwxaciavz","title":"Cross-Site Scripting (XSS) (Labs: Portswigger Academy)","pathname":"/web-application-pentest/cross-site-scripting-xss/cross-site-scripting-xss-labs-portswigger-academy","siteSpaceId":"sitesp_YrpPa","breadcrumbs":[{"label":"Web Application Pentest"},{"label":"Cross-Site Scripting (XSS)"}]}]}