Tag

web

Certifications, Learning Material, Reviews, Training Labs

OffSec Web Expert (OSWE) ReviewFeatured

Introduction

The OffSec Web Expert (OSWE) is an web application penetration testing certification offered by Offsec that teaches advanced web attacks and exploits, with an emphasis of performing white-box engagements and source code review.

It comes with the Advanced Web Attacks and Exploitation (AWAE) video and text course and it’s one of the major advanced certifications in the penetration testing world. In this review I take the time to talk about my personal experience with this course, the learning material and resources I used to prepare etc.

Read more
Guides, Web

A Complete Guide to Hacking GraphQL

Introduction

I decided to make this guide due to the lack of material on this topic and my own struggles with GraphQL. Its purpose is to provide pentesters with the necessary tools to perform tests against GraphQL implementations. I encourage you to do further research and practice on your own with the references provided at the end.

Read more