# Payloads All The Things A list of usefull payloads and bypasses for Web Application Security TODO: * PHP Serialization * CSV Injection To improve: * RCE * SQL injection * XXE * SSRF * Upload * Tar command exec * Traversal Directory * XSS * PHP Include TODO v2: * Remove "_" in dir name * Add CVE : Hearbleed and ShellShock ? # /!\ Work in Progress : 40%