3v4Si0N / RS256-2-HS256
JWT Attack to change the algorithm RS256 to HS256
☆32Updated last year
Related projects ⓘ
Alternatives and complementary repositories for RS256-2-HS256
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆73Updated 4 years ago
- Simple python script to check against hypothetical JWT vulnerability.☆50Updated 3 years ago
- SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients☆70Updated 3 years ago
- A burp extension to generate sqlmap PoC from target HTTP request.☆28Updated 7 years ago
- This changes the style of Burp Suite's Repeater tabs to help the testers☆28Updated 5 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 7 years ago
- Highlighting different firefox containers in Burp Proxy☆11Updated 3 years ago
- Kubernetes Scanner☆41Updated 2 years ago
- ☆44Updated 2 years ago
- Auto Recon Bash Script☆30Updated 4 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 4 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated last year
- Writeup of CVE-2020-15906☆44Updated 4 years ago
- Pythonize Intruder Payload☆13Updated 3 years ago
- A simple remote scanner for Liferay Portal☆18Updated last year
- ☆41Updated 4 years ago
- This is a set of tips and reminders for pentesting processes and scripts/programs. Initially for personal use, but if anyone else finds t…☆52Updated 4 years ago
- Clickjacking PoC Generator☆35Updated 4 years ago
- The format of various s3 buckets is convert in one format. for bugbounty and security testing.☆83Updated last year
- Maintaining account persistence via XSS and Oauth☆76Updated 5 years ago
- client-side prototype pullution vulnerability scanner☆46Updated 3 years ago
- ☆102Updated 4 years ago
- Hacking Artifactory with server side template injection☆51Updated 4 years ago
- XXE Injection Payloads☆27Updated 5 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆49Updated 5 years ago
- YSOSERIAL Integration with burp suite☆40Updated 2 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 5 years ago
- Full TTY reverse shell over SSH☆57Updated 4 years ago
- a parser + crawler for .DS_Store files exposed publically☆54Updated last year