Links to various helpful resources we recommend you keep bookmarked throughout your hunts.
Cheatsheets
Cross-Site Scripting (XSS)
OWASP Cheat Sheet Series - XSS Filter Evasion Cheat Sheet
https://cheatsheetseries.owasp.org/cheatsheets/XSS_Filter_Evasion_Cheat_Sheet.html
Portswigger - Cross-site scripting (XSS) cheat sheet
https://portswigger.net/web-security/cross-site-scripting/cheat-sheet
Server-Side Request Forgery (SSRF)
Portswigger - SSRF - URL validation bypass cheat sheet
https://portswigger.net/web-security/ssrf/url-validation-bypass-cheat-sheet
Cobalt.io - A Pentester’s Guide to Server Side Request Forgery (SSRF)
https://www.cobalt.io/blog/a-pentesters-guide-to-server-side-request-forgery-ssrf
General Hacking – No Category
EdOverflow - Web developer & security researcher
https://github.com/EdOverflow/bugbounty-cheatsheet