Comprehensive List of Website Hacking Types (100+) sourced from ChatGPT
- SQL Injection
- Blind SQL Injection
- Boolean-Based SQL Injection
- Time-Based SQL Injection
- Error-Based SQL Injection
- Cross-Site Scripting (XSS)
- Reflected XSS
- Stored XSS
- DOM-Based XSS
- Cross-Site Request Forgery (CSRF)
- Clickjacking
- Remote File Inclusion (RFI)
- Local File Inclusion (LFI)
- Directory Traversal
- Session Hijacking
- DNS Spoofing
- Man-in-the-Middle (MITM) Attack
- Brute Force Attack
- Credential Stuffing
- Dictionary Attack
- Code Injection
- Command Injection
- XML External Entities (XXE)
- HTTP Host Header Attack
- Broken Authentication
- Sensitive Data Exposure
- Security Misconfiguration
- Insecure Deserialization
- Server-Side Request Forgery (SSRF)
- Denial of Service (DoS)
- Distributed Denial of Service (DDoS)
- Path Manipulation
- Subdomain Takeover
- Open Redirect
- Cache Poisoning
- Business Logic Attack
- Social Engineering
- Zero-Day Exploit
- Exploit Kits
- Malware Injection
- Web Shell Attack
- Phishing
- Spear Phishing
- Whaling
- Content Spoofing
- Parameter Tampering
- URL Manipulation
- Cookie Poisoning
- HTTP Response Splitting
- Broken Access Control
- API Abuse
- Side-Channel Attack
- Supply Chain Attack
- CSP Bypass (Content Security Policy Bypass)
- OAuth Misconfiguration
- DOM-Based XSS
- Web Cache Deception
- CRLF Injection
- Eavesdropping
- Remote Code Execution (RCE)
- Privilege Escalation
- SQL Truncation Attack
- Timing Attack
- Padding Oracle Attack
- Credential Harvesting
- Session Fixation
- URL Redirection Attack
- HTTP Parameter Pollution (HPP)
- Race Condition
- Slowloris Attack
- DNS Amplification Attack
- Smurf Attack
- Ping of Death
- SYN Flood
- TCP Hijacking
- ICMP Flood
- ARP Spoofing
- Email Spoofing
- Typosquatting
- Watering Hole Attack
- Malvertising
- Click Fraud
- Cookie Injection
- Cookie Theft
- Cookie Tampering
- DNS Cache Poisoning
- Command and Control (C2) Attack
- Keylogging
- Credential Reuse Attack
- Watermarking Attack
- Image-Based Attack (Steganography)
- WebRTC Leak
- Host Header Injection
- Token Hijacking
- Hidden Field Manipulation
- Bypassing Input Validation
- Null Byte Injection
- File Upload Vulnerability
- Cross-Origin Resource Sharing (CORS) Exploit
- Cross-Origin Request Attack (COR)
- Security Token Exposure
- HTML Injection
- Frame Injection
- Tabnabbing
- DNS Rebinding
- HTTP Smuggling
- HTTP Desync Attack
- SSL Stripping
- TLS Downgrade Attack
- JavaScript Injection
- Python Code Injection
- Bash Injection
- Shellshock Attack
- Path Traversal
- Symlink Attack
- Broken Function Level Authorization
- DNS Tunneling
- WebSocket Injection
- Parameter Pollution
- Java Deserialization Attack
- PHP Object Injection
- Command Injection via Environment Variables
- Header Injection
- RegEx Injection
- Server-Side Template Injection (SSTI)
- PHP Code Injection
- DOM Clobbering
- Prototype Pollution
- Buffer Overflow
- Heap Overflow
- Stack Overflow
- Heap Spray Attack
- Session Replay Attack
- Token Replay Attack
- Referrer Leakage
- Weak Password Attack
- Content Injection
- Response Tampering
- Email Injection
- Path Manipulation Attack
- JSON Injection
- LDAP Injection
- XPath Injection
- iFrame Injection
- Process Injection
- Memory Corruption
- Cross-Site History Manipulation
- Drive-by Download Attack
- Command Injection via Shell
- Exposed Debug Endpoint
- Rate Limiting Bypass
- Anti-Automation Bypass
- Automated Scanner Detection Bypass
- WAF Bypass (Web Application Firewall)
- Websocket Abuse
- Multi-Factor Authentication (MFA) Bypass
- Sensitive File Exposure
- Default Credentials Exploit
- Hidden Admin Panel Detection
- Deprecated API Exploit
- Weak CAPTCHA Protection
- Insufficient Logging and Monitoring
- Excessive Data Exposure
- Improper Error Handling
- Full Path Disclosure
- WebRTC Exploit
- Content Spoofing in HTML Emails
- Vulnerable JavaScript Libraries
- Browser Fingerprinting
- Remote Desktop Exploit
- SAML Injection
- JWT Token Forgery
- Firebase Misconfiguration
- Server Misconfiguration
- Third-Party Script Exploits
- Email me: Neil@HarwaniSytems.in
- Website: www.HarwaniSystems.in
- Blog: www.TechAndTrain.com/blog
- LinkedIn: Neil Harwani | LinkedIn