Dhamuharker / Server-Side-Template-InjectionLinks
Template injection allows an attacker to include template code into an existant (or not) template. A template engine makes designing HTML pages easier by using static template files which at runtime replaces variables/placeholders with actual values in the HTML pages
☆13Updated 5 years ago
Alternatives and similar repositories for Server-Side-Template-Injection
Users that are interested in Server-Side-Template-Injection are comparing it to the libraries listed below
Sorting:
- XSSor is a semi-automatic reflected and persistent XSS detector extension for Burp Suite. The tool was written in Python by Barak Tawily,…☆62Updated 4 years ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆103Updated 5 years ago
- ☆51Updated 5 years ago
- gathers the XSS cheatsheet payloads and creates a usable wordlist☆74Updated 4 years ago
- Add headers to all Burp requests to bypass some WAF products☆43Updated 2 years ago
- Script will enumerate domain name using horizontal enumeration, reverse lookup. Each horziontal domain will then be vertically enumerated…☆32Updated 6 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆46Updated 2 years ago
- A Python script to parse net blocks & domain names from SPF record☆85Updated 5 years ago
- ☆48Updated 4 years ago
- Fuzzing for LFI using Burpsuite☆66Updated 9 years ago
- A XSS mind map ;)☆57Updated 9 years ago
- An entry level resource to learning bug bounty.☆28Updated 7 years ago
- Broken Link Hijacking Burp Extension☆57Updated 6 years ago
- Simple Server Side Request Forgery services enumeration tool.☆55Updated 7 years ago
- subdomain bruteforce list☆102Updated last year
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆111Updated 3 years ago
- websocket-connection-smuggler☆66Updated 5 years ago
- RAS(RAndom Subdomain) Fuzzer☆42Updated 5 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆86Updated 5 years ago
- Piper Burp Suite Extender plugin☆126Updated last year
- ☆60Updated last year
- ☆60Updated 7 years ago
- CRLF and open redirect fuzzer☆112Updated 4 years ago
- Tool that checks for path traversal traces in a given web application url, plus it is capable of multi-threading, set timeout and 5-layer…☆46Updated 7 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆91Updated 6 years ago
- services-names-wordlist☆83Updated last month
- Proof of concept for CVE-2020-5902☆72Updated 5 years ago
- The format of various s3 buckets is convert in one format. for bugbounty and security testing.☆86Updated 2 years ago
- Some of my bug bounty tools☆52Updated 6 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago