Learning Web Pentesting I started with SQLi, What Should I Focus on Next ? (my goal is bug bounty)
作者分享了自己最近开始学习Web应用渗透测试的经历,从SQL注入入手,并通过PortSwigger Academy和TryHackMe labs进行实践。目前对SQL注入有一定了解,但不确定是继续深入练习还是转向其他漏洞。 2025-7-26 12:10:50 Author: www.reddit.com(查看原文) 阅读量:14 收藏

I’ve recently started diving into web application pentesting and it’s been a blast so far. I began with sql injection , and I’m currently learning through PortSwigger Academy and TryHackMe labs.

I feel like I’ve got a basic understanding of how SQLi works (both error-based and some blind techniques), and I’ve practiced it a bit in labs. But I don’t want to jump around randomly I’d like to follow a solid progression to really build strong foundations so what do you think I must do now ? Practice more on SQLi or move to another vulnerability ?


文章来源: https://www.reddit.com/r/HowToHack/comments/1m9rrp2/learning_web_pentesting_i_started_with_sqli_what/
如有侵权请联系:admin#unsafe.sh