Content Injection.

Welcome to the Injection Dojo

This dojo is going to guide you through the fascinating world of content injection—from the simplest tricks that toy with CSV cells to the most devious payloads that bend YAML parsers to your will.

Content injection happens when untrusted input masquerades as structure or code instead of plain text. In each challenge, you’ll discover how a well-crafted string can slip past filters and warp parser logic across formats like CSV, HTML/JavaScript, JSON, XML, and YAML.

By the end of this journey, you won’t just spot injection flaws—you’ll wield them to elevate privileges, read protected data, and understand exactly why they happen.

Let your content injection adventure begin—may your payloads be clever and your defenses unbreakable!

Contributing: This dojo is open source! Contribute challenges, fixes, and improvements here.

Questions? Come chat on this dojo's Discord channel!



Award: 💉


Stats

Dojo Stats
Total Solves
736
Hacking Now
0
Unique Hackers
119
Challenges
10
Activity History
Recent Awardees
0xS0N1C
05/19/26 10:27 PM
coutinho21
05/05/26 11:18 PM
Fhearz
04/19/26 05:48 PM
Recent Solves
Class Cancellation 3
06/03/26 03:22 AM
Class Cancellation
06/03/26 02:52 AM
Teacher Login 7
06/03/26 02:45 AM
Teacher Login 6
06/03/26 02:42 AM
Teacher Login 5
06/03/26 02:40 AM

Modules



30-Day Scoreboard:


Rank Hacker Badges Score