BishopFox / json-interop-vuln-labs
Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"
☆201Updated last year
Alternatives and similar repositories for json-interop-vuln-labs:
Users that are interested in json-interop-vuln-labs are comparing it to the libraries listed below
- ☆170Updated 3 years ago
- ☆180Updated 3 months ago
- ☆128Updated 4 years ago
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- Unofficial documentation for the great tool Param Miner☆176Updated 2 years ago
- Content-Type Research☆599Updated last year
- ☆533Updated last year
- Client Side Prototype Pollution Scanner☆514Updated 2 years ago
- A simple SSRF-testing sheriff written in Go☆324Updated 3 months ago
- A curated list of awesome browser security learning material.☆139Updated 2 years ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆351Updated 6 months ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆299Updated 2 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆152Updated 2 years ago
- Predict Mongo ObjectIds☆127Updated 6 years ago
- Simple "postMessage logger" Chrome extension☆94Updated 4 years ago
- ☆672Updated 2 years ago
- List of Trusted Types bypasses☆88Updated 10 months ago
- Automatic tool for DNS rebinding-based SSRF attacks☆297Updated 4 years ago
- Continuous monitoring for JavaScript files☆219Updated 5 years ago
- List HackerOne private program assets☆150Updated 3 years ago
- Workshop given at Hack in Paris 2019☆121Updated last year
- This repo contains all the injections mentioned in my talk and enumerators.☆122Updated last year
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆151Updated 6 months ago
- ☆70Updated 3 years ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆246Updated 3 months ago
- DOM XSS scanner for Single Page Applications☆401Updated 7 months ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆347Updated 2 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆206Updated 7 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago