aex.red

Home

❯

Compendium

❯

Web Security

Folder: Compendium/Web-Security

10 items under this folder.

  • May 17, 2026

    Browser Security Headers

    • web
    • hsts
    • csp
    • x-frame-options
    • content-security-policy
    • xss-protection
    • cors-headers
    • nosniff
    • referrer
    • security-headers
  • May 17, 2026

    CORS

    • web
    • origin
    • access-control
    • preflight
    • credentials
    • same-origin
    • wildcard
    • misconfiguration
    • cors
  • May 17, 2026

    CSRF

    • web
    • state
    • token
    • anti-csrf
    • samesite
    • referer
    • double-submit
    • forged-request
    • csrf
  • May 17, 2026

    Cookie Security

    • web
    • httponly
    • secure
    • samesite
    • csrf
    • session
    • cookie-theft
    • cookies
  • May 17, 2026

    JOSE Framework

    • web
    • jose
    • jws
    • jwe
    • jwk
    • jwa
    • signature
    • encryption
    • rfc7519
    • jwt
    • authentication
    • authorisation
    • jsonwebtoken
    • token
    • sessionmanagement
    • session
  • May 17, 2026

    LFI

    • web
    • path-traversal
    • include
    • rfi
    • php
    • null-byte
    • directory-traversal
    • wrapper
    • lfi
  • May 17, 2026

    SQLi

    • web
    • sqli
    • injection
    • union
    • blind
    • time-based
    • error-based
    • bypass
    • sqlmap
    • stacked
    • out-of-band
    • sql
  • May 17, 2026

    SSRF

    • web
    • localhost
    • internal
    • cloud-metadata
    • bypass
    • 169.254
    • redirect
    • blind-ssrf
    • aws-imds
    • ssrf
  • May 17, 2026

    XSS

    • web
    • reflected
    • stored
    • dom
    • payload
    • bypass
    • csp-bypass
    • javascript
    • alert
    • cookie-theft
    • xss
  • May 17, 2026

    XXE

    • web
    • xxe
    • entity
    • dtd
    • ssrf
    • lfi
    • blind-xxe
    • oob
    • xml-injection
    • file-read
    • xml

Created with Quartz v4.5.2 © 2026

  • GitHub
  • Discord Community