Etiquetas

Mostrar todas las etiquetas (624 más)
RPC Enumeration 8 Sniper Attack 8 Remote Code Execution (RCE) 7 Remote Command Execution (RCE) 7 Server Side Template Injection (SSTI) 7 Command Injection (CI) 6 Cracking ZIP File 6 LDAP Enumeration 6 MSSQL 6 Abusing Docker Group 5 Abusing Sudoers Privilege 5 Apache 5 Brainfuck Decoding 5 Cracking MD5 Hash 5 Cracking ZIP 5 Default Credentials 5 DNS 5 MSSQL Enumeration 5 Pivoting 5 Privesc - Abusing Docker Group 5 Privesc - Juicy Potato 5 Shell Escape 5 WinRM 5 Aircrack-Ng Suite 4 Base64 Decoding 4 Binary Analysis 4 Dirección MAC 4 Flask 4 Kali Linux 4 Microsoft IIS 4 Modo Monitor 4 Password Spraying 4 Privesc - Shell Escape 4 Samba 4 Samba Enumeration 4 SQL Injection 4 SQLi Automatization (SQLMAP) 4 Steganography 4 Tarjeta De Red 4 TP-LINK V2/V3 4 Abusing File Upload 3 Abusing LXD Group 3 Abusing SUID Binary 3 Arbitrary File Read 3 AS-REP Roasting Attack 3 ASP/ASPX Payload 3 Consejos 3 Cracking NTLMv2 Hash 3 DCSync Attack 3 Docker Container Enumeration 3 Enabling Xp_cmdshell (RCE) 3 Eternal Blue MS17-010 (RCE) 3 Local Port Forwarding 3 Macchanger 3 Privesc - Abusing LXD Group 3 Privesc - DCSync Attack 3 Privesc - Eternal Blue MS17-010 (RCE) 3 Remote Code Execution - Authenticated (RCE - Authenticated) 3 Reseña Certificación 3 Reverse Port Forwarding 3 SharpHound and BloodHound Enumeration 3 Steganalysis 3 Abusing /Etc/Passwd File 2 Abusing Binary Capabilities 2 Abusing FTP Service 2 Abusing IIS Service 2 Abusing Sudoers Privileges on Tar Binary 2 Analysis With DNSpy 2 Applying Shell Escape 2 Arbitrary File Upload 2 ASPX WebShell 2 Base64 Decodification 2 Blind SQL Injection 2 Blind XSS 2 BloodHound and Python-BloodHound Enumeration 2 BloodHound and SharpHound Enumeration 2 Buffer Overflow 2 Buffer Overflow (X32) Stack Based 2 CMS Pluck 2 Command Injection 2 Cracking Bcrypt Hash 2 Cracking SSH Key 2 Cross-Site Scripting (XSS) 2 CVE-2014-6287 (RCE) 2 CVE-2020-24186 (Unauthenticated RCE) 2 Directory Traversal 2 DNS Enumeration 2 Grafana 2 Handshake 2 LFI + PHP Wrappers 2 Malicious Payload 2 Malicious Web.config File 2 MariaDB 2 MariaDB Enumeration 2 Node JS Command Injection 2 Node JS Express 2 Password Brute Force 2 Password Spraying Attack 2 Path Traversal 2 Port Forwarding 2 Privesc - Abuse of Capability CAP_SETUID on Python3 Binary 2 Privesc - Abusing SUID Binary 2 Privesc - MS11-046 (LPE) 2 Privesc - MS16-075-Reflection-Juicy 2 Privesc - Python Library Hijacking 2 Python Library Hijacking 2 Remote Port Forwarding 2 RID Cycling Attack 2 ROT13 Decodification 2 Server Side Prototype Pollution 2 ShellShock Attack 2 Silver Ticket Attack 2 Source Code Analysis 2 SSH Enumeration 2 SSH Private Key Theft (LFI) 2 Stored XSS 2 Subdomain Fuzzing 2 Tomcat 2 Web Steganography 2 Webmin 2 WordPress Plugin Vulnerability 2 Abuse of Capability CAP_SETUID on Python3 Binary 1 Abusign File Upload 1 Abusign MSSQL With Xp_dirtree 1 Abusing Account Operators Group 1 Abusing AD-DACL AddSelf 1 Abusing AD-DACL ForceChangePassword 1 Abusing AD-DACL WriteDacl 1 Abusing AD-DACL WriteOwner 1 Abusing ADCS (SubCA Template) 1 Abusing AddSelf Permission 1 Abusing ADM Group 1 Abusing APT Functionality 1 Abusing DNSAdmins Group 1 Abusing Docker Binary 1 Abusing Execute Command Node From N8N 1 Abusing File Upload (AFU) 1 Abusing ForceChangePassword Permission 1 Abusing ForceChangePassword Privilege 1 Abusing Gdb Binary 1 Abusing GDBserver to Create Backdoor 1 Abusing Go Binary (Sudoers) 1 Abusing Groovy Console (Reverse Shell) 1 Abusing Group Disk 1 Abusing Hidden Web Functionality 1 Abusing Kubernetes Service Account Token to Read Secrets 1 Abusing Linked Server on MSSQL 1 Abusing Local PowerShell Functionality 1 Abusing Logs 1 Abusing PHP WebShell 1 Abusing Plugin File Upload 1 Abusing Portainer Portal to Mounting the Host Root Filesystem 1 Abusing Puttygen Binary 1 Abusing Python's Custom Built-in Interpreter 1 Abusing RunC Wrapper (CVE-2024-21626) 1 Abusing SeBackupPrivilege Privilege 1 Abusing SeLoadDriverPrivilege Privilege 1 Abusing Sudoers Privilege on Iptables and Iptables-Save Binaries 1 Abusing Sudoers Privilege on Zsh Binary 1 Abusing Sudoers Privileges on Awk Binary 1 Abusing Sudoers Privileges on Bash Binary 1 Abusing Sudoers Privileges on Bpftrace Binary 1 Abusing Sudoers Privileges on Charcol Binary 1 Abusing Sudoers Privileges on Needrestart Binary 1 Abusing Sudoers Privileges on Neofetch Binary 1 Abusing Sudoers Privileges on Php Binary 1 Abusing Sudoers Privileges on Python3 Script 1 Abusing Sudoers Privileges on RunC Binary 1 Abusing Sudoers Privileges on Script 1 Abusing Sudoers Privileges on Sed Binary 1 Abusing Sudoers Privileges on Systemctl Binary 1 Abusing Sudoers Privileges on Vi Binary 1 Abusing Sudoers Privileges on Vim Binary 1 Abusing Telnet Privileges 1 Abusing Tomcat Text-Based Manager 1 Abusing User Mount in Docker Container 1 Abusing Virtual Host Manager 1 Abusing Vuln Process Spoolsv 1 Abusing Webmin Tools 1 Abusing Werkzeug Debug Console 1 Abusing WordPress Plugin WP File Manager (Uploading Reverse Shell) 1 Abusing Wordpress Template 1 Abusing Xp_cmdshell to Load Reverse Shell 1 Abussing Support Ticket System 1 AD Chain Attack 1 AD Enumeration (AdPEAS) 1 Adobe ColdFusion 1 Analizing and Abusing of Customized Service 1 Analysing Metadata in Image 1 Analysing WorkFlow From N8N 1 Apache Httpd 2.4.7 1 API Broken Authentication 1 API Docker 1 API Fuzzing 1 AppArmor Confinement Escape 1 Arbitrary File Upload (AFU) 1 ASP.NET 1 Authenticated XXE 1 Authentication Bruteforce Mitigation Bypass 1 Automating LDAP Injection With Python 1 Automating SSTI (SSTImap) 1 BadSuccessor Attack 1 Base64 Codification 1 Bash History Analysis 1 Binary Analisys 1 Binary Analysis (Ghidra) 1 Binary Decoding 1 BloodHound and Bloodhound-Python Enumeration 1 BloodHound-Python and BloodHound Enumeration 1 BloodyAD Enumeration 1 Bookingpress 1 Brute Force 1 Brute Force Attack on SSH 1 Brute Force Attack to SSH 1 Brute Force Attack to Web Login 1 Bypassing Client-Side Restrictions (Client-Side Tampering) 1 Bypassing Command Blacklist 1 Bypassing File Upload 1 Bypassing PHP Sandbox 1 Cacti Authenticated Graph Template RCE 1 Cacti Network Management 1 Capturing Ticket Granting Ticket (TGT) With Rubeus 1 CI/CD Jenkins 1 Client-Side Tampering 1 Cluster Bomb Attack 1 CMS Bludit 1 CMS FlatPress 1 CMS Grav 1 CMS Joomla 1 CMS PrestaShop 1 Code Analysis 1 Comandos Linux 1 CONTPAQi 1 Cracking 7z File 1 Cracking AES Encrypted File (PyAesCrypt) 1 Cracking Cipher File 1 Cracking FireFox Stored Credentials 1 Cracking GPG File 1 Cracking Image 1 Cracking KeePass Database 1 Cracking KeePass Password Database 1 Cracking NTLM Hash 1 Cracking Office File 1 Cracking Password Safe Database 1 Cracking Password Safe File 1 Cracking PBKDF2 Hash 1 Cracking PSK Hash 1 Cracking RAR File 1 Cracking SHA-512 Hash 1 Cracking WordPress Hash 1 Cracking Yescrypt Hash 1 Credential Exposure 1 CronJob Exploitation 1 Cryptography 1 CUPS 1 CUPS Administration Exploit 1 Custom Wordlist Generation From a Found Password 1 CVE- 2014-6287 (RCE) 1 CVE-2007-2447 1 CVE-2009-2265 (RCE) 1 CVE-2009-3250 (RCE - Authenticated) 1 CVE-2012-4869 (RCE) 1 CVE-2014-4688 (CI) 1 CVE-2014-6271 (RCI) 1 CVE-2014-6278 (RCI) 1 CVE-2015-6967 (AFU) 1 CVE-2017-7269 (RBO) 1 CVE-2018-15473 1 CVE-2018-15473 (SSH User Enumeration) 1 CVE-2018-9276 1 CVE-2019-16113 1 CVE-2019-17240 1 CVE-2019-18988 1 CVE-2020-25213 (RCE) 1 CVE-2020-29607 1 CVE-2020-7384 (Msfvenom Exploitation - APK TCI) 1 CVE-2021-29447 (Authenticated XXE) 1 CVE-2021-43798 1 CVE-2022-0739 (USI) 1 CVE-2022-25765 (CI) 1 CVE-2023-32784 (Memory Dump) 1 CVE-2024-1698 1 CVE-2024-23897 (LFI) 1 CVE-2024-28116 1 CVE-2024-30088 1 CVE-2024-35250 (LPE) 1 CVE-2024-3673 1 CVE-2025-24054 1 CVE-2025-24071 1 CVE-2025-24367 1 CVE-2025-32463 1 Debbuging With DNSpy 1 Decoding Base58 Hash 1 Decrypting AES-ECB Blocks 1 Decrypting Encrypted File 1 Deploying Authenticated Code Execution Malicious WAR 1 Deserialization Attack 1 Directory / Path Traversal 1 Dirty Cow Exploit 1 Dirty Pipe Exploitation 1 DLL Analysis 1 DLL Hijacking 1 Docker Conatiner Enumeration 1 Docker Enumeration 1 Docker Toolbox 1 Domain Zone Transfer Zone Attack (AXFR) 1 Dumping Git Repository 1 Dumping LSA Secrets 1 Dynamic Port Forwarding 1 ECPPTv3 1 EJPTv2 1 Elastix 1 Elastix 2.2.0 - 'Graph.php' (LFI) 1 ElkArte Forum 1 Enabling OPENROWSET(BULK) Function on MSSQL (Arbitrary File Read) 1 Enabling Xp_cmdshell(RCE) 1 ESC3 Attack (ADCS ESC3 - Enrollment Agent Template) 1 ESC3 Certificate Attack - Enrollment Agent Template 1 Escalada De Privilegios 1 EWPTv2 1 Exiftool Command Injection (CVE-2021-22204) 1 Exploiting GPP SYSVOL 1 Exploiting SMB Share 1 Extracting Metadata 1 File Upload Bypass + RCE (FlatPres Ver 1.2.1) 1 File Upload Remote Code Execution (Authenticated) 1 Flask Volt 1 Forging FormsAuth Cookie With ASP.NET 1 FTMP 1 Fuzzing Subdomains 1 GDBserver 1 Generating Id_rsa Private Key With Puttygen 1 Git 1 Git Enumeration 1 Git Hooks 1 Git Repository 1 Gitea 1 Gmic Binary 1 God Potato Attack 1 Golden Ticket Attack 1 Gopherus MySQL Payloads 1 Grafana 8.3.0 - Directory Traversal and Arbitrary File Read (CVE-2021-43798) 1 GraphQL 1 GraphQL Introspection 1 Grav CMS Remote Code Execution (Authenticated) - SSTI + RCE 1 Heap-Based Buffer Overflow in Sudo (CVE-2021-3156) 1 HelpDeskZ 1 HelpDeskZ < 1.0.2 - (Authenticated) SQL Injection 1 Http File Server (HFS) 1 HTTP3 Quic 1 Identifying Vulnerable CAs 1 IIS 6.0 WebDAV 1 IKE Protocol 1 Internal Brute Force Attack 1 Java Decompiler 1 Jenkins 1 Jenkins Script Console Abuse 1 Jenkins Server 1 Joomla Enumeration 1 Joomla Exploitation Abusing Available Template 1 Kerberoasting Attack 1 Kubernetes 1 LDAP Injection 1 LFI to RCE 1 LLMNR Poisoning 1 Local File Enumeration (WordPress) 1 Local File Inclusion (LFI) Unauthenticated 1 Local Privilege Escalation 1 Log Poisoning 1 LXD Service Configuration 1 Magic Hashes Bypass 1 Malicious Macro Analysis (Olevba) 1 Malicious ODT File 1 Mattermost 1 Mcchanger 1 Memory Dump (Volcado De Memoria) 1 Metadata Analysis 1 Metasploit Module - CVE-2024-30085 (Cloud Files) 1 Meterpreter Getsystem Command Privilege Escalation 1 MFP Firmware Upload 1 Microsoft Windows Server Code Execution MS08-067 (MWSCE MS08-067) 1 Mimikatz 1 MonkeyCom 1 MS11-046 (LPE) 1 MS15-051 (LPE) 1 Msfvenom Exploitation - APK Template Command Injection 1 MySQL Database Modification 1 MySQL Decrypting Password 1 N8N Platform 1 NFS Pentesting 1 Nginx 1 Nibbleblog 1 Node JS 1 NTLM Hash Disclosure (Spoofing) 1 NTLM Relay Attack 1 OS Ticket 1 OU Relocation (PowerView) 1 OU Takeover Attack 1 Parameter Fuzzing 1 Pass-the-Ticket (PtT) 1 Passpie 1 PassTheHash 1 Password Safe Aplication 1 PDF Metadata Analysis 1 Pdfkit 1 PDO SQL Injections 1 PfSense 1 PHP 8.0.1-Dev (RCE) 1 PHP Object Injection Vulnerability (GiveWP - CVE-2024-5932) 1 PHP Reverse Shell 1 PHP Sandbox 1 PHP Type Juggling 1 PHP Webshell 1 PHP Wrappers 1 PHP-CGI Parameter Injection (CVE-2024-457) 1 Pi-Hole 1 Plaintext Credentials Exposed in Shell History 1 Plaintext Credentials Exposure in Binary 1 Plaintext Password 1 Playfair Cipher 1 Plugin NotificationX Exploitation (CVE-2024-1698) 1 Plugin WpDiscuz 7.0.4 1 Port Knocking 1 Portainer.io 1 PostgreSQL Injection 1 PostgreSQLI (RCE) 1 Privesc - Abusing /Etc/Passwd File 1 Privesc - Abusing APT Functionality 1 Privesc - Abusing Binary Capabilities 1 Privesc - Abusing Boot2docker 1 Privesc - Abusing Check_MK Windows Agent (Versión 2.1.0p10) 1 Privesc - Abusing DNSAdmins Group 1 Privesc - Abusing Gdb Binary 1 Privesc - Abusing Group Disk 1 Privesc - Abusing Knife Binary 1 Privesc - Abusing Passpie Credentials 1 Privesc - Abusing Portainer Portal to Mounting the Host Root Filesystem 1 Privesc - Abusing Python's Custom Built-in Interpreter 1 Privesc - Abusing RunC Wrapper (CVE-2024-21626) 1 Privesc - Abusing SeLoadDriverPrivilege Privilege 1 Privesc - Abusing Sudoers Privilege 1 Privesc - Abusing Sudoers Privilege on Awk Binary 1 Privesc - Abusing Sudoers Privilege on Iptables and Iptables-Save Binaries 1 Privesc - Abusing Sudoers Privilege on Zsh Binary 1 Privesc - Abusing Sudoers Privileges on Bash Binary 1 Privesc - Abusing Sudoers Privileges on Bpftrace Binary 1 Privesc - Abusing Sudoers Privileges on Charcol Binary 1 Privesc - Abusing Sudoers Privileges on Needrestart Binary 1 Privesc - Abusing Sudoers Privileges on Neofetch Binary 1 Privesc - Abusing Sudoers Privileges on Python3 Script 1 Privesc - Abusing Sudoers Privileges on RunC Binary 1 Privesc - Abusing Sudoers Privileges on Script 1 Privesc - Abusing Sudoers Privileges on Sed Binary 1 Privesc - Abusing Sudoers Privileges on Systemctl Binary 1 Privesc - Abusing Sudoers Privileges on Tar Binary 1 Privesc - Abusing Sudoers Privileges on Vi Binary 1 Privesc - Abusing Sudoers Privileges on Vim Binary 1 Privesc - Abusing SUID Binary (LPE) 1 Privesc - Abusing Tomcat File Upload 1 Privesc - Abusing UsoSvc 1 Privesc - Abusing Webmin Tools 1 Privesc - Applying Shell Escape 1 Privesc - BadSuccessor Attack 1 Privesc - Bash History Analysis 1 Privesc - Buffer Overflow 1 Privesc - Bypassing PHP Sandbox 1 Privesc - Churrasco Token Kidnapping (LPE) 1 Privesc - Cracking FireFox Stored Credentials 1 Privesc - Cracking Root Password Hash 1 Privesc - Cracking SSH Private Key 1 Privesc - Credential Exposure 1 Privesc - Custom Wordlist Generation From a Found Password 1 Privesc - CVE-2011-1496 1 Privesc - CVE-2012-5519 (CUPS Administration Exploit) 1 Privesc - CVE-2018-9276 (RCE - Authenticated) 1 Privesc - CVE-2021-3156 1 Privesc - CVE-2021-4034 (Pwnkit Pkexec Exploit) 1 Privesc - CVE-2022-0847 (Dirty Pipe) 1 Privesc - CVE-2023-32784 1 Privesc - CVE-2024-0670 1 Privesc - CVE-2024-35250 (LPE) 1 Privesc - CVE-2025-9074 1 Privesc - Deserialization Attack 1 Privesc - Dirty Cow Exploit 1 Privesc - DLL Hijacking 1 Privesc - Doas.conf Privilege Escalation 1 Privesc - Docker Breakout 1 Privesc - Docker Remote API Escape 1 Privesc - Dumping LSA Secrets 1 Privesc - Enabling Xp_cmdshell (RCE) 1 Privesc - ESC3 Attack (ADCS ESC3 - Enrollment Agent Template) 1 Privesc - ESC7 Technique 1 Privesc - Exiftool Command Injection (CVE-2021-22204) 1 Privesc - Exploiting SMB Share 1 Privesc - Exposed Root Password in Environment Variable 1 Privesc - God Potato Attack 1 Privesc - Golden Ticket Attack 1 Privesc - Kerberoasting Attack 1 Privesc - LXD/LXC Exploitation 1 Privesc - Malicious Git Hook 1 Privesc - Metasploit Module - CVE-2024-30085 (Cloud Files) 1 Privesc - Meterpreter GetSystem Command Privilege Escalation 1 Privesc - MS10-059 (LPE) 1 Privesc - MS13-053 (LPE) 1 Privesc - MS15-051 (LPE) 1 Privesc - MS16-032 (LPE) 1 Privesc - MS16-098 (LPE) 1 Privesc - Msfconsole Privilege Escalation 1 Privesc - MWSCE MS08-067 1 Privesc - Pass-the-Ticket (PtT) 1 Privesc - PrintNightmare Exploit (CVE-2021-1675) 1 Privesc - Privilege Abuse of Binaries to Access Sensitive Files (Binary Most) 1 Privesc - Privilege Escalation via Exposed Administrator Credentials in Plaintext File 1 Privesc - RBCD Attack 1 Privesc - Reading PowerShell Command History 1 Privesc - Recovering Deleted Files 1 Privesc - Reverse Shell With RunasCs Binary 1 Privesc - S4U Attack 1 Privesc - S4U2self/S4U2proxy Abuse Chain 1 Privesc - Script Hijacking 1 Privesc - Server Side Template Injection (SSTI) 1 Privesc - Shared Object Binary Analysis 1 Privesc - SSH Key Injection 1 Privesc - Sudo Chroot Privilege Escalation Exploit (CVE-2025-32463) 1 Privesc - TeamViewer Enumeration & Exploitation (CVE-2019-18988) 1 Privesc - UMSCE (CVE-2007-2447) 1 Privesc - Unauthorized Root Password Modification via /Etc/Passwd 1 Privesc - Wildcard Injection 1 Privesc - YAML Deserialization 1 Privesc - YAML Deserialization Attack 1 Privesc - YAML Injection 1 Privilege Abuse of Binaries to Access Sensitive Files (Binary Most) 1 Privilege Escalation via Exposed Administrator Credentials in Plaintext File 1 PRTG Network Monitor 1 Pwnkit Pkexec Exploit (LPE) 1 Python Automation 1 Python Vulnerability 1 Python YAML Serialization (PyYAML) 1 Raspberry Pi 1 RDP 1 Reading PowerShell Command History 1 Rehabilitating Disabled AD Accounts 1 Rejetto HttpFileServer (HFS) 1 Remote Buffer Overflow (RBO) 1 Remote Code Execution (Authenticated) 1 Remote Code Execution (RCE) (Authenticated) 1 Remote Command Execution (RCE - Webshell) 1 Remote Command Injection (RCI) 1 Resource-Based Constrained Delegation Attack (RBCD Attack) 1 Reverse Shell With Nx.exe Binary 1 Reverse Shell With RunasCs Binary 1 Reverse Tunneling SOCKS Proxy 1 RIDs Brute Force 1 Roundcube Webmail 1 Ruby Enumeration 1 RYD Cycling Attack 1 S4U Attack 1 S4U2self/S4U2proxy Abuse Chain 1 SCF Malicious File 1 Script Hijacking 1 Server Side Request Forgery Attack (SSRF) 1 Server-Side Request Forgery (SSRF) 1 Server-Side Request Forgery (SSRF) + Local File Inclusion (LFI) 1 Session Fixation 1 Session Hijacking 1 Sessión Hijacking 1 Shadow Credentials Attack 1 Shared Object Binary Analysis 1 Shell 1 Shell via Flask Debug (Werkzeug Debbuger - Unintended Way) 1 SMB Guest Account Exploitation 1 Smokeping 1 SNMP Enumeration 1 Source Code Analisys 1 SQL Injection (Boolean-Based Blind) 1 SQL Injection (Error Based) 1 SQL Injection Union-Based 1 SQLi Automatization (SQLi) 1 SQLite3 Enumeration 1 SSH Key Injection 1 SSH User Enumeration 1 SSH Username Enumeration 1 SSL Heartbleed Exploitation 1 SSRF + LFI + PHP Wrapper 1 Steganalysis on JPG Image 1 Sudo Chroot Privilege Escalation Exploit (CVE-2025-32463) 1 System Enumeration (Linux) 1 System Recongnition (Linux) 1 SYSVOL Mining 1 TeamViewer Enumeration & Exploitation 1 Telnet 1 Tiny File Manager 1 Tmux 1 Tombstone AD Enumeration 1 Trafic Analysis 1 Tunneling SOCKS5 1 Twig - SSTI (PHP) 1 UDP Scan 1 Umbraco 1 Unauthenticated Arbitrary File Upload (RCE) 1 Unauthenticated Blind SQL Injection 1 Unauthenticated SQL Injection (USI) 1 Unauthorized Root Password Modification via /Etc/Passwd 1 Uploading Malicious DOT File 1 Username Map Script Command Execution (UMSCE) 1 Vtiger CRM 1 Vulnserver Binary 1 Weak Credential Storage 1 Web Socket Exploit 1 Webmin 1.920 Backdoor 1 WebShell to Reverse Shell 1 Wildcard Injection 1 Windows Kernel Elevation of Privilege Vulnerability (CVE-2024-30088) 1 WordPress Plugin Web-Directory-Free Exploitation (CVE-2024-3673) 1 WordPress Theme Editor Abuse (RCE) 1 WordPress Theme Editor Modification (RCE) 1 XML External Entity (XXE) Attack 1 XSLT Injection 1 XXE + PHP Wrappers 1 XXE Injection 1 YAML 1 YAML Deserialization 1 YAML Deserialization Attack (Python) 1 YAML Injection 1