Skip to content

sindecker/remediation-handbook

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 
 
 

Repository files navigation

Remediation Handbook

Author: Matt McKee LinkedIn: linkedin.com/in/mattmckee-11193234

Complete technical reference for fixing security vulnerabilities. 47 vulnerability classes covered end-to-end — what it is, the impact, how to detect it, exact remediation commands and code, and how to verify the fix works. No filler, no theory padding. Find the vulnerability, go to the section, implement the fix.


Table of Contents

Web Application

  1. SQL Injection
  2. Cross-Site Scripting (XSS)
  3. CSRF
  4. Authentication Weaknesses
  5. JWT Vulnerabilities
  6. Insecure Direct Object References (IDOR)
  7. Path Traversal
  8. Server-Side Request Forgery (SSRF)
  9. XML External Entity (XXE)
  10. Server-Side Template Injection (SSTI)
  11. Command Injection
  12. Deserialization Vulnerabilities
  13. Open Redirect
  14. Business Logic Flaws
  15. Race Conditions
  16. Second-Order Vulnerabilities
  17. Supply Chain Vulnerabilities
  18. GraphQL Vulnerabilities
  19. WebSocket Vulnerabilities
  20. HTTP Request Smuggling

Authentication & Session

  1. Session Fixation / Hijacking
  2. Brute Force
  3. Password Reset Flaws
  4. OAuth Vulnerabilities
  5. API Key Exposure

Infrastructure & Network

  1. SSL/TLS Misconfigurations
  2. HTTP Security Headers
  3. Directory Traversal / Exposed Files
  4. Exposed Admin Interfaces
  5. DNS Security
  6. Open Ports and Services
  7. Default Credentials
  8. Information Disclosure

Wireless & Physical

  1. Public WiFi / Rogue Access Point
  2. RFID Cloning
  3. NFC Vulnerabilities
  4. Bluetooth Vulnerabilities
  5. Physical Access Controls

Social Engineering

  1. Phishing
  2. Vishing
  3. Pretexting
  4. USB / Drop Attacks

Advanced

  1. Server Hardening
  2. Container Security
  3. CI/CD Pipeline Security
  4. Logging and Monitoring
  5. Incident Response

Appendices

  • A. Quick Reference Tool Commands
  • B. Remediation Checklist
  • C. Compliance Mapping

Read Free Online

The complete handbook is available as a single Markdown file — remediation_handbook.md — readable directly on GitHub.

Get the Formatted PDF

[Coming soon — formatted PDF version]


License

Released for educational and professional use. You may use, adapt, and redistribute with attribution.

Matt McKeelinkedin.com/in/mattmckee-11193234

About

Remediation Handbook — 77 vulnerability remediation guides. From SQL injection to ransomware response. The fix for every finding.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors