{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":91277330,"defaultBranch":"master","name":"wstg","ownerLogin":"OWASP","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2017-05-14T23:20:40.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/155815?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1707228978.0","currentOid":""},"activityList":{"items":[{"before":"a6eae9a23555c1553880a22f6d6b292c8fd4e0c4","after":"59a29e178411193ccec4c6011df463855508e18e","ref":"refs/heads/master","pushedAt":"2024-04-29T22:34:24.000Z","pushType":"pr_merge","commitsCount":32,"pusher":{"login":"ThunderSon","name":null,"path":"/ThunderSon","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/32433575?s=80&v=4"},"commit":{"message":"Close block code","shortMessageHtmlLink":"Close block code"}},{"before":"9f1e62b3cec4b5e2cc9df50aa31a70857e7ddf79","after":"a6eae9a23555c1553880a22f6d6b292c8fd4e0c4","ref":"refs/heads/master","pushedAt":"2024-03-15T15:56:49.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"#1135 fixed link. (#1136)\n\n* #1135 fixed link.\n\n* #1135 fixed link and some grammar/typos.\n\n---------\n\nCo-authored-by: nsowatsk ","shortMessageHtmlLink":"#1135 fixed link. (#1136)"}},{"before":"d1d275f92282ee5d1685597946977716e10456b3","after":"9f1e62b3cec4b5e2cc9df50aa31a70857e7ddf79","ref":"refs/heads/master","pushedAt":"2024-03-07T10:11:50.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Add MFA bypass by changing OIDC flow (#1134)","shortMessageHtmlLink":"Add MFA bypass by changing OIDC flow (#1134)"}},{"before":"cbe346952aa92ab745d124509ab2722d915d78a2","after":"d1d275f92282ee5d1685597946977716e10456b3","ref":"refs/heads/master","pushedAt":"2024-03-05T22:19:37.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 04-Testing_for_HTTP_Parameter_Pollution.md (#1133)","shortMessageHtmlLink":"Update 04-Testing_for_HTTP_Parameter_Pollution.md (#1133)"}},{"before":"801d8e066adab8004810979b9e1dd238765b4b36","after":"cbe346952aa92ab745d124509ab2722d915d78a2","ref":"refs/heads/master","pushedAt":"2024-03-04T13:37:19.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Nginx typo fix (#1132)","shortMessageHtmlLink":"Nginx typo fix (#1132)"}},{"before":"a6c4017207a10ddccbb4eeb770b0ce8873008060","after":"801d8e066adab8004810979b9e1dd238765b4b36","ref":"refs/heads/master","pushedAt":"2024-03-01T19:34:23.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Introduction - Add \"Disable Compensating Controls For Testers\" (#1131)\n\n* Introduction - Add \"Disable Compensating Controls For Testers\"\r\n\r\nAdd a header to the introduction page recommending disabling compensating controls such as a WAF. Testers can use this section to provide product teams with an authoritative resource on how to set up a penetration test effectively.\r\n\r\nThere is a widespread belief that penetration tests should be conducted in a black-box setting as this is more realistic. While true, the goal of this PR is to help educate that white-box penetration tests without compensating controls are much more effective in securing an application.","shortMessageHtmlLink":"Introduction - Add \"Disable Compensating Controls For Testers\" (#1131)"}},{"before":"c16fa36dda4a61d087beccfdf28f918e4f601d01","after":"a6c4017207a10ddccbb4eeb770b0ce8873008060","ref":"refs/heads/master","pushedAt":"2024-02-27T21:38:33.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"ThunderSon","name":null,"path":"/ThunderSon","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/32433575?s=80&v=4"},"commit":{"message":"Update 03-Testing_for_Privilege_Escalation.md\n\nFixed typo - readability","shortMessageHtmlLink":"Update 03-Testing_for_Privilege_Escalation.md"}},{"before":"4ddd78d62f1445ecfea55ee0ac350bfa87435898","after":"c16fa36dda4a61d087beccfdf28f918e4f601d01","ref":"refs/heads/master","pushedAt":"2024-02-22T02:47:46.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 04-Testing_for_Account_Enumeration_and_Guessable_User_Account.md (#1128)","shortMessageHtmlLink":"Update 04-Testing_for_Account_Enumeration_and_Guessable_User_Account.…"}},{"before":"df06f2135ad5ba2a0edf1087f96e9f2fb66aa536","after":"4ddd78d62f1445ecfea55ee0ac350bfa87435898","ref":"refs/heads/master","pushedAt":"2024-02-17T01:10:03.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 01-Test_Network_Infrastructure_Configuration.md (#1127)\n\nFixing typo - missing word","shortMessageHtmlLink":"Update 01-Test_Network_Infrastructure_Configuration.md (#1127)"}},{"before":"049957613213df68a45df99040d3cf6477bc50c1","after":"df06f2135ad5ba2a0edf1087f96e9f2fb66aa536","ref":"refs/heads/master","pushedAt":"2024-02-08T16:47:47.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Annotate 055-056 markdownlint in ORM content (#1126)","shortMessageHtmlLink":"Annotate 055-056 markdownlint in ORM content (#1126)"}},{"before":"fed60f72878ce87dc45497988942714b8007d806","after":"049957613213df68a45df99040d3cf6477bc50c1","ref":"refs/heads/master","pushedAt":"2024-02-06T21:28:23.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Tweak table to escape pipe content (#1125)\n\n* Tweak table to escape pipe content\r\n* Link fix","shortMessageHtmlLink":"Tweak table to escape pipe content (#1125)"}},{"before":"3fc99248430bd84ea6e014f1995fec465ac28579","after":null,"ref":"refs/heads/20240206141058","pushedAt":"2024-02-06T14:16:18.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"}},{"before":"a9d92d06d45b271745b7cfbb7466f4cd43d8dea8","after":"fed60f72878ce87dc45497988942714b8007d806","ref":"refs/heads/master","pushedAt":"2024-02-06T14:16:15.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Publish Latest checklists 2024-02-06 (#1124)\n\nUpdates based on OWASP/wstg@a9d92d0","shortMessageHtmlLink":"Publish Latest checklists 2024-02-06 (#1124)"}},{"before":null,"after":"3fc99248430bd84ea6e014f1995fec465ac28579","ref":"refs/heads/20240206141058","pushedAt":"2024-02-06T14:10:59.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"wstgbot","name":null,"path":"/wstgbot","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/62450690?s=80&v=4"},"commit":{"message":"Publish Latest checklists 2024-02-06\n\nUpdates based on OWASP/wstg@a9d92d0","shortMessageHtmlLink":"Publish Latest checklists 2024-02-06"}},{"before":"68f9f13ff55c18c159ceb65e5bbf54c3e0730891","after":"a9d92d06d45b271745b7cfbb7466f4cd43d8dea8","ref":"refs/heads/master","pushedAt":"2024-02-06T14:10:23.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Create 11-Testing_for_Simultaneous_Sessions (#1111)\n\n* Create 11-Testing_for_Simultaneous_Sessions\r\n* Update README.md\r\n* Update README.md\r\n\r\n---------\r\n\r\nCo-authored-by: Rick M ","shortMessageHtmlLink":"Create 11-Testing_for_Simultaneous_Sessions (#1111)"}},{"before":"f33d49364c72f4e5ad082cca0eea1de64ffe1ceb","after":"68f9f13ff55c18c159ceb65e5bbf54c3e0730891","ref":"refs/heads/master","pushedAt":"2024-02-04T22:22:24.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 05-Testing_for_SQL_Injection.md (#1123)\n\n* Update 05-Testing_for_SQL_Injection.md\r\n\r\nFix boolean logic error for inference methods\r\nThe current inferential query will only work in cases where the Id value actually equals 1. In blind SQL cases this value is likely not known.\r\nSELECT field1, field2, field3 FROM Users WHERE Id='1' AND ASCII(SUBSTRING(username,1,1))=97 AND '1'='1'\r\n\r\nChanging the first AND to an OR will ensure the inferential query executes regardless of the Id value.\r\nSELECT field1, field2, field3 FROM Users WHERE Id='1' OR ASCII(SUBSTRING(username,1,1))=97 AND '1'='1'\r\n\r\n---------\r\n\r\nSigned-off-by: kingthorin \r\nCo-authored-by: kingthorin ","shortMessageHtmlLink":"Update 05-Testing_for_SQL_Injection.md (#1123)"}},{"before":"48828582cb27cd345dfe2d1a43e4156aae3d7525","after":"f33d49364c72f4e5ad082cca0eea1de64ffe1ceb","ref":"refs/heads/master","pushedAt":"2023-12-15T12:42:55.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"update github action versions (#1121)","shortMessageHtmlLink":"update github action versions (#1121)"}},{"before":"e7b0b24e75d32703c89dc83f729e507e0c3d722d","after":"48828582cb27cd345dfe2d1a43e4156aae3d7525","ref":"refs/heads/master","pushedAt":"2023-12-10T16:02:29.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update README.md - Grammar (#1120)","shortMessageHtmlLink":"Update README.md - Grammar (#1120)"}},{"before":"15c8fd89f3aa0328c06616065ca5d3a9c19ecd3a","after":"e7b0b24e75d32703c89dc83f729e507e0c3d722d","ref":"refs/heads/master","pushedAt":"2023-12-05T13:15:49.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Fix Grammer (#1119)","shortMessageHtmlLink":"Fix Grammer (#1119)"}},{"before":"76d4c27bcd706cc35f0b8aae411741f94a507b9b","after":"15c8fd89f3aa0328c06616065ca5d3a9c19ecd3a","ref":"refs/heads/master","pushedAt":"2023-12-03T19:49:08.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Fixed Grammatical Errors + Added List Of Known SQL Injection Strings (#1117)\n\n* Fixed Grammatical Errors + Added List Of Known SQL Injection Strings\r\n\r\n---------\r\n\r\nCo-authored-by: Rick M ","shortMessageHtmlLink":"Fixed Grammatical Errors + Added List Of Known SQL Injection Strings (#…"}},{"before":"93301e58037ac09999eff0c9b5a06d9e1ec9c315","after":"76d4c27bcd706cc35f0b8aae411741f94a507b9b","ref":"refs/heads/master","pushedAt":"2023-11-28T12:55:38.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"fix-1114: Broken anchor link (#1115)\n\n- fixed Cookies-Link to point to \"Common Identifiers\".\"Cookies\" (same\r\nheader name) by adding a \"-1\" to the href","shortMessageHtmlLink":"fix-1114: Broken anchor link (#1115)"}},{"before":"971d365f6fd7d462e11aa483eb3800ed37eac7cb","after":"93301e58037ac09999eff0c9b5a06d9e1ec9c315","ref":"refs/heads/master","pushedAt":"2023-11-24T14:44:55.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Tweak ZAP references - No longer an OWASP project (#1112)\n\nSigned-off-by: kingthorin ","shortMessageHtmlLink":"Tweak ZAP references - No longer an OWASP project (#1112)"}},{"before":"e26d896dcc5ba1cea46e4d09346a4f4b57777045","after":"971d365f6fd7d462e11aa483eb3800ed37eac7cb","ref":"refs/heads/master","pushedAt":"2023-10-30T18:32:03.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Switch from hub to gh (#1108)\n\nSwitch from hub to gh. hub in no longer included in ububtu-latest.","shortMessageHtmlLink":"Switch from hub to gh (#1108)"}},{"before":"2b41d2bfb673361cd15affadd8e8465f20a314c3","after":"e26d896dcc5ba1cea46e4d09346a4f4b57777045","ref":"refs/heads/master","pushedAt":"2023-09-27T11:44:03.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 11-Test_Cloud_Storage.md (#1101)","shortMessageHtmlLink":"Update 11-Test_Cloud_Storage.md (#1101)"}},{"before":"5bfdc7cf03fe4cf934e7cdb822776ec043c00125","after":"2b41d2bfb673361cd15affadd8e8465f20a314c3","ref":"refs/heads/master","pushedAt":"2023-09-26T22:28:58.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Fix admininistrator to administrator in 10-Testing_JSON_Web_Tokens.md (#1102)","shortMessageHtmlLink":"Fix admininistrator to administrator in 10-Testing_JSON_Web_Tokens.md ("}},{"before":"4e50227263ba8257e7537557e8c289405539048f","after":null,"ref":"refs/heads/20230919115453","pushedAt":"2023-09-19T12:00:41.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"}},{"before":"ef267a2c59ad0acc92218b991fc5993291e7145c","after":"5bfdc7cf03fe4cf934e7cdb822776ec043c00125","ref":"refs/heads/master","pushedAt":"2023-09-19T12:00:37.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Publish Latest checklists 2023-09-19 (#1097)\n\nUpdates based on OWASP/wstg@ef267a2","shortMessageHtmlLink":"Publish Latest checklists 2023-09-19 (#1097)"}},{"before":null,"after":"4e50227263ba8257e7537557e8c289405539048f","ref":"refs/heads/20230919115453","pushedAt":"2023-09-19T11:54:53.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"wstgbot","name":null,"path":"/wstgbot","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/62450690?s=80&v=4"},"commit":{"message":"Publish Latest checklists 2023-09-19\n\nUpdates based on OWASP/wstg@ef267a2","shortMessageHtmlLink":"Publish Latest checklists 2023-09-19"}},{"before":"4831e873996d950b2abaa4d147e5da6fe4c92df8","after":"ef267a2c59ad0acc92218b991fc5993291e7145c","ref":"refs/heads/master","pushedAt":"2023-09-19T11:54:07.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Update 10-Test_for_Subdomain_Takeover.md (#1096)","shortMessageHtmlLink":"Update 10-Test_for_Subdomain_Takeover.md (#1096)"}},{"before":"a86f3508788ec0a4e4fb68b45ef29603866e5976","after":"4831e873996d950b2abaa4d147e5da6fe4c92df8","ref":"refs/heads/master","pushedAt":"2023-09-10T15:31:05.000Z","pushType":"pr_merge","commitsCount":1,"pusher":{"login":"kingthorin","name":"Rick M","path":"/kingthorin","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/7570458?s=80&v=4"},"commit":{"message":"Fix typo in CONTRIBUTING.md (#1095)\n\nCo-authored-by: Parvez Khan ","shortMessageHtmlLink":"Fix typo in CONTRIBUTING.md (#1095)"}}],"hasNextPage":true,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"djE6ks8AAAAEPXHMvQA","startCursor":null,"endCursor":null}},"title":"Activity · OWASP/wstg"}