AntoineRondelet / uxss-vulnerabilities-researchLinks
Some research on UXSS vulnerabilities in web browsers
☆12Updated 7 years ago
Alternatives and similar repositories for uxss-vulnerabilities-research
Users that are interested in uxss-vulnerabilities-research are comparing it to the libraries listed below
Sorting:
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆51Updated last year
- Compiled dataset of Java deserialization CVEs☆60Updated 5 years ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆14Updated 2 years ago
- XS-Leak Browser Test Suite☆85Updated last year
- CTF writeups☆30Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆34Updated 3 weeks ago
- Testability Pattern Catalogs for SAST☆31Updated 7 months ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆94Updated last year
- Chrome extension to detect possible xsleaks☆12Updated 6 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆111Updated 2 weeks ago
- Same Origin XSS challenge☆64Updated 3 years ago
- ☆12Updated 2 years ago
- Inti easter challenge poc☆18Updated 4 years ago
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆55Updated last month
- ☆34Updated 3 years ago
- This repository is an interactive collection of my solutions to various XSS challenges.☆12Updated 4 years ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago
- ☆56Updated 4 years ago
- List of Trusted Types bypasses☆102Updated last year
- jws2pubkey tool☆40Updated 2 months ago
- Fuzzing script for redirect URL validator☆52Updated 5 years ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆255Updated 10 months ago
- SADDNS: Side Channel Based DNS Cache Poisoning Attack☆61Updated 3 years ago
- A Bash wrapper for radamsa that can be used to fuzz exported activities and deep links.☆52Updated 4 years ago
- PoC for leaking text nodes via CSS injection☆35Updated 7 years ago
- ☆60Updated 2 years ago
- ☆111Updated 3 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated 9 months ago