Web
Resources
Articles
Brainfuck beware: JavaScript is after you! - Patricio Palladino
CSRF, CORS, and HTTP Security headers Demystified - Varun Naik
Hacking JWT Tokens: The None Algorithm - Shivam Bathla
GitHub Repositories
phpbash - A semi-interactive PHP shell compressed into a single file
Tools
JSON Web Tokens
Online Malware Detection
Websites
abuse.ch - Fighting malware and botnets
Feodo Tracker - sharing C&C servers
MalwareBazaar - Malware sample exchange
SSL Blacklist - Detecting malicious SSL connections
ThreatFox - Share Indicators of Compromise
URLhaus - Malware URL exchange
YARAify - YARA scan engine
bWAPP - a buggy web application
Cisco Talos Intelligence - comprehensive threat intelligence
JSFuck - Write any JavaScript with 6 Characters: []()!+
urlscan.io - URL and website scanner
Web Security Academy - PortSwigger
Last updated