[LazyHackers]_
Home Plans Courses Certifications Cheatsheets Leaderboard Tracker Quiz
Login Register
Home Plans & Pricing Courses Certifications Cheatsheets Leaderboard Tracker Quiz
Login Register
All Web Hacking 16 Network Security 2 Malware Analysis 2 walkthrough 149 Pro Labs 16 Tools & Scripts 2 OSINT 2 Cryptography 2 Privilege Escalation 2 certification 3 Fortress 1 Active Directory 2
WE
Web Hacking
Mar 27, 2026

Advanced Authentication Attacks: OAuth Exploitation, SSO Leakage and JWT Attacks

Complete guide to OAuth 2.0 account takeover, SAML signature wrapping, JWT alg:none/RS256-HS256 confusion, kid injection, JWK head…

lazyhackers
88 · 20m
WE
Web Hacking
Mar 27, 2026

DOM-Based Attacks: DOM Clobbering, Mutation XSS and Client-Side Template Injection

Advanced DOM attack techniques — DOM clobbering to bypass sanitizers, mXSS DOMPurify bypass, AngularJS sandbox escape payloads, CS…

lazyhackers
145 · 18m
WE
Web Hacking
Mar 27, 2026

Supply Chain Attacks: Malicious npm Packages, Dependency Confusion and CI/CD Injection

Deep technical guide to software supply chain attacks — dependency confusion, malicious npm postinstall scripts, GitHub Actions in…

lazyhackers
257 · 18m
WE
Web Hacking
Mar 27, 2026

File Upload to RCE: Polyglot Files, MIME Bypass, SVG XSS and ImageMagick Exploits

Complete file upload exploitation guide — MIME bypass, double extension tricks, polyglot JPEG/PHP files, SVG XXE, ImageTragick RCE…

lazyhackers
234 · 19m
WE
Web Hacking
Mar 27, 2026

WAF Bypass Techniques: Encoding, Parameter Pollution and Advanced Evasion

Complete WAF bypass methodology — fingerprinting, encoding tricks, HPP, chunked transfer bypass, ModSecurity evasion, Cloudflare/A…

lazyhackers
198 · 17m
WE
Web Hacking
Mar 27, 2026

XS-Leaks: Cross-Origin Side Channel Attacks Explained

Deep technical guide to XS-Leak browser side-channel attacks — timing oracles, frame counting, error-based oracles, cache timing, …

lazyhackers
79 · 17m
WE
Web Hacking
Mar 27, 2026

CSP Bypass Techniques: JSONP Abuse, Trusted Domains and AngularJS Sandbox Escape

Advanced CSP bypass methodology — JSONP endpoint abuse, CDN bypass, AngularJS ng-app escapes for every version, strict-dynamic byp…

lazyhackers
139 · 17m
WE
Web Hacking
Mar 27, 2026

WebSocket Attacks, Browser Exploitation and Clickjacking 2.0

Complete guide to CSWSH WebSocket hijacking, Service Worker C2 channels, browser extension vulnerabilities, CORS exploitation, and…

lazyhackers
62 · 21m
WE
Web Hacking
Mar 27, 2026

SQL Injection Deep Dive: From Detection to Full Database Compromise

Master every SQLi technique from manual detection to full database compromise — error-based, union, blind, OOB, sqlmap, WAF bypass…

lazyhackers
66 · 18m
WE
Web Hacking
Mar 27, 2026

Cross-Site Scripting Mastery: Reflected, Stored, DOM-Based and Blind XSS

Complete XSS guide covering all attack types, filter bypasses, CSP evasion, cookie stealing, keyloggers, BeEF framework, XSS-to-RC…

lazyhackers
293 · 16m
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • …
  • 20

Showing 31–40 of 199

🛡️

Unlock the Vault

Join to access members-only CTF writeups, tools & premium research.

View Plans →
Have an account? Login
Categories
Web Hacking
16
Network Security
2
Malware Analysis
2
walkthrough
149
Pro Labs
16
Tools & Scripts
2
OSINT
2
Cryptography
2
Privilege Escalation
2
certification
3
Fortress
1
Active Directory
2
Trending
1
HTB CAPE Exam Experience — Full Walkthrough
2,180 · 15m read
2
OSAI+ Complete Guide 2026
1,428 · 19m read
3
OSCP+ COMPLETE GUIDE - ZERO TO HERO
1,120 · 23m read
4
ADCS Attacks (ESC1–ESC15)
590 · 23m read
5
JSON and YAML Unsafe Deserialization: Detection and Exploi…
545 · 20m read
6
Nmap Mastery: Advanced Scanning, NSE Scripts and IDS Evasi…
495 · 14m read
[LazyHackers]_

Think Lazy, Hack Smart — Security research, CTF writeups, tutorials and tools for the modern hacker.

Company

  • About Us
  • Contact Us
  • Privacy Policy
  • Terms & Conditions
© 2026 LazyHackers. All rights reserved. Built with ♥ for the hacker community
Cookies Notice
We use cookies to improve security, analytics and your experience. Learn more