Infosec Consultant & Pentester
  • Home
  • About
  • CVE's
  • Responsible Disclosure
  • 100 Days of Dev Ops

OWASP

iOS

Mobile Testing - Getting Started

A few weeks ago I was tasked with performing a mobile application
Read more
Chris Young
OWASP

OWASP Newcastle Webinar - 5th May 2020

Earlier this year I did an internal presentation to my colleagues at
Read more
Chris Young
OWASP

Web Application Vulnerabilities 101 - Directory Traversal

Directory traversal aims to access files and directories that are stored outside
Read more
Chris Young
File Inclusion

DVWA - File Inclusion

LFI & RFI are commonly found in poorly written PHP code, allows
Read more
Chris Young
OWASP

CSRF - Cross Site Request Forgery

CSRF refers to an attack against authenticated web applications using Cookies wherein
Read more
Chris Young
OWASP

XSS - Cross Site Scripting

XSS in an input validation weakness which allows an attacker to inject
Read more
Chris Young
OWASP

XXE - XML External Entity

The XML External Entity (XXE) attack is a type of attack against
Read more
Chris Young
OWASP

Unrestricted File Upload

Many web applications allow users to upload content.  The content may be
Read more
Chris Young
SSRF

SSRF - Server Side Request Forgery

Server Side Request Forgery (SSRF) is a vulnerability that describes the behaviour
Read more
Chris Young
dvwa

SQL Injection Techniques

Basic ' or '1'='1 ' OR '1&
Read more
Chris Young
OWASP

Understanding SQL Injection

SQL injection is one of the oldest attacks that can be used
Read more
Chris Young
Infosec Consultant & Pentester © 2026
Powered by Ghost