Client-Side Prototype Pollution Tools
☆91Sep 21, 2021Updated 5 years ago
Alternatives and similar repositories for cspp-tools
Users that are interested in cspp-tools are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Client Side Prototype Pollution Scanner☆531Sep 17, 2022Updated 4 years ago
- Simple tools to handle string and generate subdomain permutations☆15Jun 8, 2022Updated 4 years ago
- Prototype Pollution and useful Script Gadgets☆1,652Jan 27, 2024Updated 2 years ago
- ☆699Jul 4, 2022Updated 4 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆518Jun 22, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Scanner for Cross-Site WebSocket Hijacking☆40Feb 19, 2026Updated 7 months ago
- ☆564Mar 27, 2025Updated last year
- Detects request smuggling via HTTP/2 downgrades.☆94Jul 30, 2022Updated 4 years ago
- Tool for making it easy to collect dns results from the CLI☆40Aug 14, 2024Updated 2 years ago
- Collection of tools to interact with Intigriti website☆17Aug 10, 2024Updated 2 years ago
- A collection of scripts for bug-bounty related stuff☆38Sep 4, 2020Updated 6 years ago
- Adobe Experience Manager Vulnerability Scanner☆185May 22, 2023Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆160Sep 7, 2026Updated last month
- GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations☆423Dec 24, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- research☆149Mar 21, 2024Updated 2 years ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆404Aug 15, 2024Updated 2 years ago
- Content-Type Research☆670Jun 29, 2025Updated last year
- Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.☆133Jul 11, 2021Updated 5 years ago
- ☆56Aug 26, 2021Updated 5 years ago
- Prototype Pollution exploits collection☆40Aug 8, 2021Updated 5 years ago
- Prototype Pollution Scanner☆146Apr 11, 2021Updated 5 years ago
- Same Origin XSS challenge☆64Apr 7, 2022Updated 4 years ago
- Subdomain enumeration statistics and wordlists from bugbounty scopes.☆35Mar 24, 2022Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Searcher for cross-site leaks (XS-Leaks)☆83Dec 27, 2022Updated 3 years ago
- Dump all available paths and/or endpoints on WADL file.☆96Nov 24, 2025Updated 10 months ago
- Let's check if your target is vulnerable for client side prototype pollution.☆64Jan 9, 2024Updated 2 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Feb 12, 2023Updated 3 years ago
- A high performance TCP SYN port scanner.☆317Mar 2, 2024Updated 2 years ago
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆675Aug 28, 2025Updated last year
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30May 6, 2020Updated 6 years ago
- ☆17Dec 14, 2022Updated 3 years ago
- Vulnerability scanner for Spring4Shell (CVE-2022-22965)☆12Apr 7, 2022Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A collection of utilities to simplify the creation of Burp Suite plugins☆23Dec 14, 2023Updated 2 years ago
- NodeJS script to extract assets for the Apple bug bounty program from their security acknowledgments page for bug bounty recon.☆80Nov 5, 2022Updated 3 years ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆51Mar 19, 2026Updated 6 months ago
- Exactly what it sounds like, which is something rad☆22Oct 12, 2022Updated 3 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆208May 15, 2026Updated 4 months ago
- ☆441Jun 1, 2021Updated 5 years ago
- grapX will iterate through the URLs and grep the endpoints with all possible extensions.☆54Mar 23, 2021Updated 5 years ago