LearnHacking.io
  • Home
  • About
continued-learning

5 Infosec Newsletters You'll Actually Read

Oct 24, 2021
ctfs

How to Write Good CTF Walkthroughs

Oct 21, 2021
appsec

Basic Web Skills: Setting Up Burp Suite

Oct 18, 2021
advice

Why You Should Start a Career in Hacking

Oct 16, 2021

PortSwigger's "DOM XSS in jQuery selector sink using a hashchange event" Walkthrough

Dec 30, 2021 3 min read appsec
PortSwigger has added another Apprentice-level DOM-based XSS Labs from Portswigger. Before we get started, you’ll need a Portswigger Academy account. This blog post shows how to solve the lab manually. After logging

PortSwigger's "Web shell upload via Content-Type restriction bypass" Walkthrough

Dec 29, 2021 3 min read appsec
This is the next of PortSwigger’s file upload labs. This one is only slightly more difficult because of a Content-Type check being performed by the server. You’ll need Burp Suite set

PortSwigger's "Remote code execution via web shell upload" Walkthrough

Dec 29, 2021 2 min read appsec
This is a writeup for the first of PortSwigger’s file upload labs. This walkthrough is a simple shell upload with no additional restrictions. For this walkthrough, you’ll need a Portswigger Academy

PortSwigger's "Authentication bypass via OAuth implicit flow" Walkthrough

Dec 28, 2021 4 min read appsec
PortSwigger recently added a set of OAuth labs and while most of them are Practitioner and Expert level, one has been created in the Apprentice category at the time of this writing. This

PortSwigger's "Clickjacking with a frame buster script" Walkthrough

Dec 28, 2021 4 min read appsec
This is the third of three Apprentice-level clickjacking labs from Portswigger Academy. For this walkthrough, you’ll need a Portswigger Academy account. Log in to your Academy account and then view the lab
Page 1 of 19
Next
LearnHacking.io © 2025
  • Sign up
Powered by Ghost