Cette page vous donne les différences entre la révision choisie et la version actuelle de la page.
oswe_awae [2019/11/18 23:22] M0N5T3R |
oswe_awae [2020/02/01 10:53] (Version actuelle) M0N5T3R |
||
---|---|---|---|
Ligne 24: | Ligne 24: | ||
Video review | Video review | ||
https://m.youtube.com/watch?v=AqNBtINEChw | https://m.youtube.com/watch?v=AqNBtINEChw | ||
+ | |||
+ | review and tips | ||
+ | https://www.vesiluoma.com/offensive-security-web-expert-oswe-advanced-web-attacks-and-exploitation/ | ||
**OSWE Preperation** | **OSWE Preperation** | ||
+ | |||
+ | AWAE-Preparation - This post contains all trainings and tutorials that could be useful for offensive security’s OSWE certification. I will be updating the post during my lab and preparation for the exam. https://z-r0crypt.github.io/blog/2020/01/22/oswe/awae-preparation/ | ||
+ | |||
+ | This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE https://github.com/ramihub/AWAE-PREP | ||
my learning case to prepare OSWE exam https://github.com/sailay1996/offsec_WE | my learning case to prepare OSWE exam https://github.com/sailay1996/offsec_WE | ||
Ligne 55: | Ligne 62: | ||
Video OSWE prep | Video OSWE prep | ||
https://www.youtube.com/watch?v=t-zVC-CxYjw&list=PLL5n_4gj5JCw1aRrlVbdMCAugNz-ia3Wh | https://www.youtube.com/watch?v=t-zVC-CxYjw&list=PLL5n_4gj5JCw1aRrlVbdMCAugNz-ia3Wh | ||
+ | |||
+ | OSWE PREP | ||
+ | https://github.com/rinku191/OSWE-prepration/wiki/PHP-Dangerous-function | ||
+ | |||
Preparation for coming AWAE Training. Work in progress... | Preparation for coming AWAE Training. Work in progress... | ||
Ligne 64: | Ligne 75: | ||
This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by me and various courses. | This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by me and various courses. | ||
https://github.com/wetw0rk/AWAE-PREP | https://github.com/wetw0rk/AWAE-PREP | ||
+ | |||
+ | AWAE/OSWE PREP | ||
+ | https://medium.com/@mucomplex/oswe-awae-exam-experience-and-tips-fbd55bbdffb8 | ||
AWAE/OSWE PREP (Code analysis to gaining rce and automating everything with Python) | AWAE/OSWE PREP (Code analysis to gaining rce and automating everything with Python) | ||
Ligne 80: | Ligne 94: | ||
https://github.com/sourceincite/poc/blob/master/SRC-2016-0012.py | https://github.com/sourceincite/poc/blob/master/SRC-2016-0012.py | ||
+ | |||
+ | Atmail Webmail => 7.5 - Multiple Vulnerabilities https://cxsecurity.com/issue/WLB-2015020027 | ||
+ | |||
+ | http://progdave.wikidot.com/basic-xss-attack | ||
+ | |||
+ | http://progdave.wikidot.com/basic-csrf-attack | ||
+ | |||
**ATutor Authentication Bypass and RCE (2.2.1) CVE-2016-2555** | **ATutor Authentication Bypass and RCE (2.2.1) CVE-2016-2555** | ||
Ligne 132: | Ligne 153: | ||
https://blog.jamesotten.com/post/applications-manager-rce/ | https://blog.jamesotten.com/post/applications-manager-rce/ | ||
+ | |||
+ | https://www.youtube.com/watch?v=HaW15aMzBUM | ||
+ | |||
+ | https://www.youtube.com/watch?v=fHZKSCMWqF4 | ||
Ligne 171: | Ligne 196: | ||
https://www.exploit-db.com/docs/english/44756-deserialization-vulnerability.pdf | https://www.exploit-db.com/docs/english/44756-deserialization-vulnerability.pdf | ||
+ | |||
+ | |||
+ | |||