DontPanicO / jwtXploiterLinks
A tool to test security of json web token
☆278Updated 4 years ago
Alternatives and similar repositories for jwtXploiter
Users that are interested in jwtXploiter are comparing it to the libraries listed below
Sorting:
- automated web assets enumeration & scanning [DEPRECATED]☆288Updated 2 years ago
- Http request smuggling vulnerability scanner☆229Updated 3 years ago
- Hidden parameters discovery suite☆225Updated 2 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆296Updated last year
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆279Updated last year
- GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations☆392Updated 2 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆512Updated 3 years ago
- Astra is a tool to find URLs and secrets inside a webpage/files☆212Updated 2 years ago
- Build your own reconnaissance system with Osmedeus Next Generation☆197Updated 2 months ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆393Updated 3 years ago
- Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads.☆262Updated last year
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆175Updated 11 months ago
- Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.☆263Updated last month
- Automated learning of regexes for DNS discovery☆373Updated 2 years ago
- A blind XSS detection and XSS data capture framework☆172Updated last week
- Web dashboard for Interactsh client☆231Updated last week
- Burpsuite plugin for Interact.sh☆227Updated last year
- Prototype pollution scanner using headless chrome☆219Updated 3 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆262Updated 2 years ago
- Turns any junk text into a usable wordlist for brute-forcing.☆223Updated last year
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- Nuclei templates written by geeknik. Claude is my co-pilot. 🤖☆279Updated 2 months ago
- A Security Tool for Enumerating WebSockets☆361Updated 3 years ago
- Get related domains / subdomains by looking at Google Analytics IDs☆250Updated 3 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆422Updated 3 weeks ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆297Updated 2 years ago
- Customisable and automated HTTP header injection☆264Updated last year
- DOM XSS scanner for Single Page Applications☆414Updated 2 weeks ago
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.☆333Updated 2 months ago