ElectrovoltSec / HackBenchLinks
How effective are LLMs in identifying and exploiting security vulnerabilities?
☆67Updated 8 months ago
Alternatives and similar repositories for HackBench
Users that are interested in HackBench are comparing it to the libraries listed below
Sorting:
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆68Updated 2 months ago
- ☆88Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated 2 years ago
- Awesome MXSS ??☆55Updated last year
- ☆80Updated 4 months ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated 11 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- Oversecured Vulnerable iOS App☆230Updated last year
- Resources for Browser Security Research☆44Updated 3 years ago
- SAST + LLM Interprocedural Context Extractor☆146Updated 3 weeks ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆53Updated 2 years ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆46Updated last year
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆94Updated 11 months ago
- Security Advisories☆34Updated 2 weeks ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- CTF write-ups☆100Updated 2 months ago
- Android webviews and securiy☆23Updated 2 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 weeks ago
- Scripts and examples for "From Day Zero to Zero Day" by Eugene Lim.☆174Updated this week
- ☆121Updated 2 months ago
- ☆23Updated 8 months ago
- Ansible build for Afl++ Frida-Mode☆25Updated last year
- A structure-aware HTTP fuzzing library☆217Updated 11 months ago
- https://arxiv.org/abs/2412.02776☆66Updated 11 months ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆24Updated 4 years ago
- ☆41Updated last week
- Guided Differential Fuzzing for HTTP Request Parsing Discrepancies☆20Updated last year
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆64Updated 6 months ago
- ☆22Updated 2 months ago