☆29Jan 10, 2023Updated 3 years ago
Alternatives and similar repositories for request-smuggling-workshop
Users that are interested in request-smuggling-workshop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Blog about HTTP Request Smuggling, including a demo application.☆31Jan 4, 2022Updated 4 years ago
- Install Script for CS☆11Aug 26, 2019Updated 6 years ago
- An easy to navigate list of unicode characters that have risky transformations 💥☆24Mar 22, 2022Updated 4 years ago
- Accompanying material needed for the workshop☆11Jun 14, 2023Updated 3 years ago
- ☆16May 17, 2018Updated 8 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Chrome extension to detect possible xsleaks☆12May 4, 2019Updated 7 years ago
- This extension replaces the default repeater tab name with the URL path of the repeater request.☆25Sep 3, 2021Updated 4 years ago
- Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.☆13Sep 11, 2021Updated 4 years ago
- Additional active scan checks for BURP☆28Oct 3, 2024Updated last year
- Python tool for expired domain discovery in crossdomain.xml files☆23Feb 21, 2017Updated 9 years ago
- Unofficial documentation for the great tool Param Miner☆186Aug 21, 2022Updated 3 years ago
- ☆92Apr 29, 2024Updated 2 years ago
- TokyoWesterns CTF 4th 2018 shrine☆12Aug 23, 2019Updated 6 years ago
- ☆22Nov 3, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆83Apr 22, 2020Updated 6 years ago
- ✨ Build a beautiful and simple website in literally minutes. Demo at https://beautifuljekyll.com☆21Dec 5, 2022Updated 3 years ago
- Jekyll theme for documentation 📝 built with material web components☆12Jun 29, 2026Updated 3 weeks ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Apr 14, 2026Updated 3 months ago
- A curated list of awesome blogs and tools about HTTP request smuggling attacks. Feel free to contribute! 🍻☆129Sep 6, 2022Updated 3 years ago
- ☆10Sep 11, 2021Updated 4 years ago
- Security challenges and CTFs created by the Penultimate team.☆14Feb 22, 2018Updated 8 years ago
- Basic Bash Script to scrape all subdomains from crtsh in a single run☆19May 23, 2022Updated 4 years ago
- ☆27Mar 11, 2025Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Workshop given at Hack in Paris 2019☆126Jun 8, 2023Updated 3 years ago
- CVE, reports, research☆15Mar 17, 2021Updated 5 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆129Jan 10, 2023Updated 3 years ago
- a javascript change monitoring tool for bugbounties☆734Jul 31, 2024Updated last year
- Awesome information for WebSockets security research☆310Jan 10, 2022Updated 4 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆348Nov 20, 2022Updated 3 years ago
- ☆12Oct 10, 2024Updated last year
- Prototype Pollution Lab☆18Nov 20, 2020Updated 5 years ago
- This Lab contain the sample codes Basic Labs related to Server-Side Request Forgery attack☆22Nov 13, 2020Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An asynchronous UDP socket that supports timestamping☆15Jul 13, 2026Updated last week
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆361Jul 17, 2023Updated 3 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Mar 11, 2021Updated 5 years ago
- A PoC exploit for CVE-2023-51467 - Apache OFBiz Authentication Bypass☆12Dec 31, 2023Updated 2 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆21Jan 20, 2025Updated last year
- A cross-platform stager for SILENTTRINITY (https://github.com/byt3bl33d3r/SILENTTRINITY)☆26Aug 9, 2019Updated 6 years ago
- Python code to Serialize and Unserialize java binary serialization format.☆28Feb 27, 2026Updated 4 months ago