Onderstaand mijn lijstje
Formulieren en URLS
Semantic URL attack
File upload attacks
XSS
CSRF
Form spoofing
Request spoofing
Databases
Access Credentials
SQL Injections
Exposed data farming
Sessies en Cookies
Cookie Theft
Exposed session data
Session fixation
Session Hijacking
Includes
Exposed Source code
Backdoor URLs
Filename manipulation
Code injections
Files and commands
Remote File Risks
Command Injections
Authentication / authorization
Bruteforce attacks
Password sniffing
Replay attacks
Persistent logins
Shared hosting
Exposed Source code
Exposed Session data
Session Injection
Filesystem browsing
Safe mode