aex.red
Search
Search
Dark mode
Light mode
Explorer
Tag: web
20 items with this tag.
May 17, 2026
OAuth
authentication
oauth
redirect-uri
state
access-token
refresh-token
pkce
authorization-code
web
May 17, 2026
OIDC
authentication
oidc
oauth
id-token
userinfo
sso
openid
discovery
web
May 17, 2026
SAML
authentication
saml
sso
xml
assertion
signature
replay
idp
sp
xml-signature-wrapping
web
May 17, 2026
API Keys & Secrets
authentication
api
header
bearer
secret
leakage
git
env
api-key
hardcoded
web
May 17, 2026
Cookie-Based Sessions
authentication
web
httponly
secure
samesite
session-fixation
hijacking
csrf
cookie
cookies
May 17, 2026
HTTP Basic & Digest
authentication
http
basic-auth
digest-auth
spray
sniff
base64
cleartext
web
May 17, 2026
JWT
authentication
jwt
none-alg
alg-switch
rs256
hs256
secret
brute
signature
claim
web
May 17, 2026
TLS
cryptography
tls
certificates
https
cipher-suite
ssl
poodle
beast
heartbleed
downgrade
protocol
web
May 17, 2026
Browser Security Headers
web
hsts
csp
x-frame-options
content-security-policy
xss-protection
cors-headers
nosniff
referrer
security-headers
May 17, 2026
CORS
web
origin
access-control
preflight
credentials
same-origin
wildcard
misconfiguration
cors
May 17, 2026
CSRF
web
state
token
anti-csrf
samesite
referer
double-submit
forged-request
csrf
May 17, 2026
Cookie Security
web
httponly
secure
samesite
csrf
session
cookie-theft
cookies
May 17, 2026
JOSE Framework
web
jose
jws
jwe
jwk
jwa
signature
encryption
rfc7519
jwt
authentication
authorisation
jsonwebtoken
token
sessionmanagement
session
May 17, 2026
LFI
web
path-traversal
include
rfi
php
null-byte
directory-traversal
wrapper
lfi
May 17, 2026
SQLi
web
sqli
injection
union
blind
time-based
error-based
bypass
sqlmap
stacked
out-of-band
sql
May 17, 2026
SSRF
web
localhost
internal
cloud-metadata
bypass
169.254
redirect
blind-ssrf
aws-imds
ssrf
May 17, 2026
XSS
web
reflected
stored
dom
payload
bypass
csp-bypass
javascript
alert
cookie-theft
xss
May 17, 2026
XXE
web
xxe
entity
dtd
ssrf
lfi
blind-xxe
oob
xml-injection
file-read
xml
May 17, 2026
80, 443, 8080, 8443 HTTP(S)
web
apache
nginx
https
ssl
tls
burp
ffuf
gobuster
web-server
http
May 17, 2026
4. Web Surface & Application Research
ffuf
crawl
fuzz
nuclei
subdomain
gowitness
aquatone
wayback
web-crawl
web