CaptainFreak / Web-CTF-Challenges
Collection of quirky behaviours of code and the CTF challenges that I made around them.
☆27Updated 4 years ago
Alternatives and similar repositories for Web-CTF-Challenges:
Users that are interested in Web-CTF-Challenges are comparing it to the libraries listed below
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- ☆159Updated 3 years ago
- ☆94Updated 3 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- Extract relative urls from a heap snapshot☆85Updated 3 years ago
- Custom scripts for the PIPER Burp extensions.☆97Updated last year
- ☆76Updated 4 years ago
- ☆56Updated 3 years ago
- ☆48Updated 4 years ago
- Same Origin XSS challenge☆56Updated 2 years ago
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- HTTP request smuggling tools☆18Updated 4 years ago
- ☆70Updated 3 years ago
- ☆44Updated 4 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 4 years ago
- Expand urls into one url for each path depth☆32Updated 4 years ago
- Authenticated SSRF in Grafana☆79Updated 7 months ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆30Updated 5 years ago
- ☆59Updated 7 months ago
- WordPress Plugin Update Confusion☆67Updated 3 years ago
- ☆78Updated 9 months ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆163Updated 3 years ago
- ☆57Updated last month
- ☆44Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- ☆147Updated 3 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- NotSoCereal: A Deserialization exploit playground☆51Updated 3 years ago