HackTrain
Github
  • ~$whoami
  • AI
    • LLM Testing
  • Common Services
    • SAP
  • Infrastructure
    • Domain Takeover
    • FTP
    • SSH
  • Mobile
    • Anti-Tampering
    • Certificate Pinning
    • Code Obfuscation
    • Device rooting
    • Root Detection
    • Storage
  • OSINT
    • Useful tools
    • Dorking
  • Phishing
    • E-mail Analysis
    • E-mail Security
  • Web
    • API
      • API Testing
      • GraphQL API
      • RESTful APIs
      • RCP APIs
      • SOAP APIs
      • Web Socket APIs
      • API keys
        • Google API keys
      • Documentation
        • Swagger UI
    • Authentication & Authorization
    • Broken Access Control
    • Command Injection
    • Clickjacking
    • CORS
    • CSRF
    • Discovery
    • HTML Injection
    • Host Header Injection
    • IDOR
    • Information Disclosure
    • Insecure Deserialization
    • JWT
    • Malicious File Upload
    • OAuth
    • Open Redirect
    • NoSQL Injection
    • Prototype Pollutions
    • Race Conditions
    • Request Smuggling
    • SQL Injection
    • SSRF
    • SSO
    • Template Injection
    • Unrestricted File Upload
    • User Enumeration
    • Web Cache Deception
    • Web Sockets
    • XML Injection
    • XLSX/CSV Formula Injection
    • XSS
      • Known payloads
    • Common Frameworks
      • Angular
      • AngularJS
      • jQuery
      • React
      • Vue.js
Powered by GitBook
On this page
  • HackTrain
  • Other notes
  • My Tools documentation

~$whoami

I'm RaffaDNDM, a Penetration Tester from Italy fallen in love with programming 13 years ago. I always try to automate my penetration testing activities when possible. I'm developing new tools and extensions to solve every problem that I figure out during my job activities and my life.

HackTrain

The current website contains my personal notes about Penetration Testing and Cyber Security topics.

Other notes

  • ITrain (Information Technology)

My Tools documentation

  • ToolkIT

NextAI

Last updated 2 months ago