- Public info gathering
- AIO Recon Tools
- Domain Enum
- Subdomain Enum
- Network Scanning
- Host Scanning
- Packet Scanning
- Files
- SSL/TLS
- Ports
- Web Attacks
- General Info
- Quick tricks
- Header injections
- Bruteforcing
- Online hashes cracked
- Crawl/Fuzz
- LFI/RFI
- Upload bypasses
- SQLi
- SSRF
- Open redirects
- XSS
- CSP
- XXE
- Cookie Padding
- Webshells
- CORS
- CSRF
- Web Cache Poisoning
- Broken Links
- Clickjacking
- HTTP Request Smuggling
- Web Sockets
- CRLF
- IDOR
- Web Cache Deception
- Session fixation
- Email attacks
- Pastejacking
- HTTP Parameter pollution
- SSTI
- Prototype Pollution
- Command Injection
- Deserialization
- Web Technologies
- APIs
- JS
- ASP.NET
- JWT
- GitHub
- GitLab
- WAFs
- Firebird
- Wordpress
- WebDav
- Joomla
- Jenkins
- IIS
- VHosts
- Firebase
- OWA
- OAuth
- Flask
- Symfony && Twig
- Drupal
- NoSQL (MongoDB, CouchDB)
- PHP
- RoR (Ruby on Rails)
- JBoss - Java Deserialization
- OneLogin - SAML Login
- Flash SWF
- Nginx
- Python
- Tomcat
- Adobe AEM
- Magento
- SAP
- MFA
- GWT
- Jira
- OIDC (Open ID Connect)
- ELK
- Others
- Cloud