PayloadsAllTheThings

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Github星跟踪图

Payloads All The Things Tweet

A list of useful payloads and bypasses for Web Application Security.
Feel free to improve with your payloads and techniques !
I :heart: pull requests :)

You can also contribute with a :beers: IRL, or using the sponsor button.

Every section contains the following files, you can use the _template_vuln folder to create a new chapter:

  • README.md - vulnerability description and how to exploit it, including several payloads
  • Intruder - a set of files to give to Burp Intruder
  • Images - pictures for the README.md
  • Files - some files referenced in the README.md

You might also like the Methodology and Resources folder :

You want more ? Check the Books and Youtube videos selections.

主要指标

概览
名称与所有者swisskyrepo/PayloadsAllTheThings
主编程语言Python
编程语言PHP (语言数: 12)
平台
许可证MIT License
所有者活动
创建于2016-10-18 07:29:07
推送于2025-04-09 09:16:20
最后一次提交2025-04-09 11:14:37
发布数6
最新版本名称4.1 (发布于 )
第一版名称1.0 (发布于 )
用户参与
星数64.8k
关注者数1.9k
派生数15.3k
提交数2.1k
已启用问题?
问题数0
打开的问题数0
拉请求数540
打开的拉请求数8
关闭的拉请求数133
项目设置
已启用Wiki?
已存档?
是复刻?
已锁定?
是镜像?
是私有?