    Posted by Deleted User on June 27, 2021 at 1:50 pm

    Is it possible in the near future will you be making content more on server-side vulnerabilities alongside you SQL Injection and Command Injection content ?

  • Christophe

    June 28, 2021 at 4:27 pm

    Anything in particular that you have in mind?

    FYI we plan on having content that covers all of the OWASP Top 10 (waiting for the new one to come out which should be soon), and HackerOne Top 10 (if there are differences in the latest lists, and also having that one be more bug bounty focused)

    • Deleted User

      Deleted User
      June 28, 2021 at 5:18 pm

      For example here are some that are considered highly valuable finds:

      • Authentication
      • Directory Traversal
      • Business Logic
      • Information Disclosure
      • Access Control
      • Server-Side Request Forgery (SSRF)
      • XXE Injection (In-Depth)

