Web Registration (Signup)
Register with the Same Username/Email Address as Existing User
admin
administrator
root# Insert null byte
admin\0
admin%00
# Insert a space before username
admin
%20admin
# Insert a space after username
admin
admin%20
# Insert spaces around username
admin
%20admin%20
# Replace uppercase/lowercase
Admin
aDmIn
# Overflow (we need to find the longest characters that can be registered)
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxadminRegister Malicious Username/Email Address
XSS
SSTI
SQLi
PHP Injection
CRLF (%0d%0a)
Broken Access Control
Last updated