ElectrovoltSec / HackBenchLinks
How effective are LLMs in identifying and exploiting security vulnerabilities?
☆68Updated 11 months ago
Alternatives and similar repositories for HackBench
Users that are interested in HackBench are comparing it to the libraries listed below
Sorting:
- ☆89Updated last year
- Awesome MXSS ??☆56Updated last year
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆90Updated 5 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 3 years ago
- Resources for Browser Security Research☆53Updated 3 years ago
- SAST + LLM Interprocedural Context Extractor☆176Updated 3 months ago
- ☆86Updated last month
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated 2 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆57Updated 2 years ago
- Oversecured Vulnerable iOS App☆231Updated 2 years ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆46Updated 2 years ago
- ☆22Updated 2 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆115Updated last year
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆67Updated 9 months ago
- ☆164Updated 2 weeks ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 months ago
- Security Advisories☆35Updated 3 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆97Updated last year
- A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, C…☆193Updated last week
- LLM-based automated patch diffing☆91Updated 4 months ago
- Guided Differential Fuzzing for HTTP Request Parsing Discrepancies☆21Updated last year
- Blog about HTTP Request Smuggling, including a demo application.☆32Updated 4 years ago
- Slides and videos from my public speeches / conferences☆83Updated this week
- ☆131Updated 5 months ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆16Updated 2 years ago
- Android webviews and securiy☆23Updated 4 months ago
- Slides and other material from various conference presentations.☆46Updated 4 months ago
- ☆34Updated 2 years ago
- C and Python training from our Vulnerability Researcher Development Program (VRDP)☆84Updated 6 months ago