BishopFox / json-interop-vuln-labs
Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"
☆204Updated 2 years ago
Alternatives and similar repositories for json-interop-vuln-labs:
Users that are interested in json-interop-vuln-labs are comparing it to the libraries listed below
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆301Updated 2 years ago
- A curated list of awesome browser security learning material.☆141Updated 2 years ago
- ☆190Updated 6 months ago
- A simple SSRF-testing sheriff written in Go☆326Updated 6 months ago
- ☆173Updated 3 years ago
- ☆539Updated last month
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- Client Side Prototype Pollution Scanner☆519Updated 2 years ago
- Simple "postMessage logger" Chrome extension☆96Updated 5 years ago
- Unofficial documentation for the great tool Param Miner☆178Updated 2 years ago
- Content-Type Research☆614Updated last year
- This repo contains all the injections mentioned in my talk and enumerators.☆126Updated last year
- Automatic tool for DNS rebinding-based SSRF attacks☆300Updated 4 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆156Updated 2 years ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆360Updated 8 months ago
- ☆151Updated last year
- DOM XSS scanner for Single Page Applications☆408Updated last month
- ☆129Updated 4 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- Workshop given at Hack in Paris 2019☆121Updated last year
- DNS rebinding toolkit☆253Updated last year
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆288Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆190Updated 9 months ago
- Continuous monitoring for JavaScript files☆220Updated 5 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆349Updated 2 years ago
- This is the data that powers the PortSwigger URL validation bypass cheat sheet.☆45Updated last week
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆173Updated 6 months ago
- List of Trusted Types bypasses☆93Updated last year
- SSRF testing tool☆245Updated 2 years ago
- Burp Extension that copies a request and builds a FFUF skeleton☆111Updated last year