Cette page vous donne les différences entre la révision choisie et la version actuelle de la page.
oswe_awae [2019/11/04 15:33] M0N5T3R |
oswe_awae [2020/02/01 10:53] (Version actuelle) M0N5T3R |
||
---|---|---|---|
Ligne 24: | Ligne 24: | ||
Video review | Video review | ||
https://m.youtube.com/watch?v=AqNBtINEChw | https://m.youtube.com/watch?v=AqNBtINEChw | ||
+ | |||
+ | review and tips | ||
+ | https://www.vesiluoma.com/offensive-security-web-expert-oswe-advanced-web-attacks-and-exploitation/ | ||
**OSWE Preperation** | **OSWE Preperation** | ||
+ | |||
+ | |||
+ | AWAE-Preparation - This post contains all trainings and tutorials that could be useful for offensive security’s OSWE certification. I will be updating the post during my lab and preparation for the exam. https://z-r0crypt.github.io/blog/2020/01/22/oswe/awae-preparation/ | ||
+ | |||
+ | This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE https://github.com/ramihub/AWAE-PREP | ||
+ | |||
+ | my learning case to prepare OSWE exam https://github.com/sailay1996/offsec_WE | ||
Preparation for coming AWAE Training. https://github.com/w4fz5uck5/OSWE | Preparation for coming AWAE Training. https://github.com/w4fz5uck5/OSWE | ||
+ | |||
Ligne 33: | Ligne 44: | ||
https://github.com/M507/AWAE-Preparation | https://github.com/M507/AWAE-Preparation | ||
- | AWAE-OSWE-Prep | + | |
- | https://github.com/ManhNho/AWAE-OSWE | + | |
Video OSWE Preperation | Video OSWE Preperation | ||
Ligne 52: | Ligne 62: | ||
Video OSWE prep | Video OSWE prep | ||
https://www.youtube.com/watch?v=t-zVC-CxYjw&list=PLL5n_4gj5JCw1aRrlVbdMCAugNz-ia3Wh | https://www.youtube.com/watch?v=t-zVC-CxYjw&list=PLL5n_4gj5JCw1aRrlVbdMCAugNz-ia3Wh | ||
+ | |||
+ | OSWE PREP | ||
+ | https://github.com/rinku191/OSWE-prepration/wiki/PHP-Dangerous-function | ||
+ | |||
Preparation for coming AWAE Training. Work in progress... | Preparation for coming AWAE Training. Work in progress... | ||
Ligne 61: | Ligne 75: | ||
This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by me and various courses. | This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by me and various courses. | ||
https://github.com/wetw0rk/AWAE-PREP | https://github.com/wetw0rk/AWAE-PREP | ||
+ | |||
+ | AWAE/OSWE PREP | ||
+ | https://medium.com/@mucomplex/oswe-awae-exam-experience-and-tips-fbd55bbdffb8 | ||
AWAE/OSWE PREP (Code analysis to gaining rce and automating everything with Python) | AWAE/OSWE PREP (Code analysis to gaining rce and automating everything with Python) | ||
Ligne 77: | Ligne 94: | ||
https://github.com/sourceincite/poc/blob/master/SRC-2016-0012.py | https://github.com/sourceincite/poc/blob/master/SRC-2016-0012.py | ||
+ | |||
+ | Atmail Webmail => 7.5 - Multiple Vulnerabilities https://cxsecurity.com/issue/WLB-2015020027 | ||
+ | |||
+ | http://progdave.wikidot.com/basic-xss-attack | ||
+ | |||
+ | http://progdave.wikidot.com/basic-csrf-attack | ||
+ | |||
**ATutor Authentication Bypass and RCE (2.2.1) CVE-2016-2555** | **ATutor Authentication Bypass and RCE (2.2.1) CVE-2016-2555** | ||
Ligne 129: | Ligne 153: | ||
https://blog.jamesotten.com/post/applications-manager-rce/ | https://blog.jamesotten.com/post/applications-manager-rce/ | ||
+ | |||
+ | https://www.youtube.com/watch?v=HaW15aMzBUM | ||
+ | |||
+ | https://www.youtube.com/watch?v=fHZKSCMWqF4 | ||
Ligne 168: | Ligne 196: | ||
https://www.exploit-db.com/docs/english/44756-deserialization-vulnerability.pdf | https://www.exploit-db.com/docs/english/44756-deserialization-vulnerability.pdf | ||
+ | |||
+ | |||
+ | |||