OWASP Hunting
Payload Reference

Security Testing Payloads

Payload reference for authorized security testing, organized by vulnerability class. Each page includes attack vectors, testing methodology, example payloads, and mitigation guidance.

For authorized testing onlysystems you own, authorized bug bounty programs, or controlled lab environments. Content originates from the OWASP Hunting repository.

Injection

Access Control

Authentication & Authorization

Server-Side

Configuration & Design

Network & Anonymity