ElectrovoltSec / HackBenchLinks
How effective are LLMs in identifying and exploiting security vulnerabilities?
☆68Updated 9 months ago
Alternatives and similar repositories for HackBench
Users that are interested in HackBench are comparing it to the libraries listed below
Sorting:
- ☆88Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆54Updated 2 years ago
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆81Updated 3 months ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- Awesome MXSS ??☆56Updated last year
- ☆82Updated this week
- SAST + LLM Interprocedural Context Extractor☆167Updated last month
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated 2 years ago
- Resources for Browser Security Research☆45Updated 3 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated 11 months ago
- Guided Differential Fuzzing for HTTP Request Parsing Discrepancies☆20Updated last year
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆46Updated last year
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆66Updated 7 months ago
- Scripts and examples for "From Day Zero to Zero Day" by Eugene Lim.☆188Updated 3 weeks ago
- Oversecured Vulnerable iOS App☆230Updated last year
- Security Advisories☆35Updated last month
- ☆22Updated last week
- A structure-aware HTTP fuzzing library☆218Updated 2 weeks ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆58Updated 7 months ago
- ☆126Updated 3 months ago
- CTF write-ups☆100Updated 3 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆94Updated 11 months ago
- Android webviews and securiy☆23Updated 2 months ago
- 🐛 UCLA ACM Cyber's Fuzzing Lab☆87Updated last month
- ☆33Updated 2 years ago
- A curated list of argument injection vectors☆41Updated 10 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆108Updated 5 months ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- Blog about HTTP Request Smuggling, including a demo application.☆33Updated 3 years ago