✅ TODO
Roadmap
Repo TODO
Focus: finish missing cheat sheets and key payload patterns. This is a work in progress. BUT, some points are written but not yet brainstormed, so maybe they will be not possible to implement. This is why some points are in "In Progress" status.
DoneIn progressTodoNeeds definition
- Done: finished and documented.
- In progress: being written.
- Todo: we know how to do it, just to write.
- Needs definition: we do not know how to do it yet.
Payload TODOs
The next payload series to add or finish.
Python
- Pickle tricks
- Magic methods overview
- Code object override
- Retrieving deleted variablesissue
C / C++
- Trigraphs / digraphs
- Preprocessor tricksissue
- Only with variableissue
- Without alphanumeric charactersissue
- Without main function
ASM / ELF
- Minimal syscall templates
- Weird instruction encodings
- Polymorphic stubs
- ELF header tricks
Shellcode
Javascript
- Prototype pollution
- Constructor injection
- Without parenthesis
- Without alphanumeric characters
- Without alphabetic characters
- Create digits & letters
- Dynamic import tricks
- Retrieve global
PHP
- Without alphanumeric characters
- Create digits & letters
- Prototype pollution
- Constructor injection
- Without parenthesis
Site TODOs
Product and UX improvements for the website.
- i18n (FR/EN)
- Search UX polish
- Tags + filters for payloads
- Contribution guide page
- Roadmap / changelog section
- SEO + social preview audit
Activity
Recent pushes
Repo
Stars history