☆28Jan 10, 2023Updated 3 years ago
Alternatives and similar repositories for request-smuggling-workshop
Users that are interested in request-smuggling-workshop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Blog about HTTP Request Smuggling, including a demo application.☆32Jan 4, 2022Updated 4 years ago
- An easy to navigate list of unicode characters that have risky transformations 💥☆24Mar 22, 2022Updated 4 years ago
- Accompanying material needed for the workshop☆11Jun 14, 2023Updated 2 years ago
- ☆16May 17, 2018Updated 8 years ago
- This extension replaces the default repeater tab name with the URL path of the repeater request.☆24Sep 3, 2021Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Chrome extension to detect possible xsleaks☆12May 4, 2019Updated 7 years ago
- Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.☆13Sep 11, 2021Updated 4 years ago
- Additional active scan checks for BURP☆28Oct 3, 2024Updated last year
- Python tool for expired domain discovery in crossdomain.xml files☆23Feb 21, 2017Updated 9 years ago
- ☆92Apr 29, 2024Updated 2 years ago
- Unofficial documentation for the great tool Param Miner☆186Aug 21, 2022Updated 3 years ago
- ☆42Dec 1, 2023Updated 2 years ago
- Examples of simple code patterns causing BOF☆14Apr 10, 2020Updated 6 years ago
- TokyoWesterns CTF 4th 2018 shrine☆12Aug 23, 2019Updated 6 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- ☆22Nov 3, 2022Updated 3 years ago
- A Web App that pings minecraft servers to get their Online status, motd, version, player count and player list.☆12Sep 29, 2017Updated 8 years ago
- Simple XXE test suite generated specifically for SAML interfaces☆23May 18, 2018Updated 8 years ago
- The repository for Building visualisation platforms for OSINT data using open source solutions☆29Aug 21, 2018Updated 7 years ago
- Jira Information Gatherer☆29Dec 3, 2017Updated 8 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆51Apr 14, 2026Updated last month
- Jekyll theme for documentation 📝 built with material web components☆12May 9, 2026Updated last week
- Security challenges and CTFs created by the Penultimate team.☆14Feb 22, 2018Updated 8 years ago
- A curated list of awesome blogs and tools about HTTP request smuggling attacks. Feel free to contribute! 🍻☆127Sep 6, 2022Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- ✨ Build a beautiful and simple website in literally minutes. Demo at https://beautifuljekyll.com☆21Dec 5, 2022Updated 3 years ago
- POC for CVE-2024-31982: XWiki Platform Remote Code Execution > 14.10.20☆10Jun 22, 2024Updated last year
- CVE, reports, research☆15Mar 17, 2021Updated 5 years ago
- a javascript change monitoring tool for bugbounties☆724Jul 31, 2024Updated last year
- Workshop given at Hack in Paris 2019☆126Jun 8, 2023Updated 2 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆129Jan 10, 2023Updated 3 years ago
- A comprehensive database of Model Context Protocol vulnerabilities, security research, and exploits☆37Feb 16, 2026Updated 3 months ago
- Awesome information for WebSockets security research☆307Jan 10, 2022Updated 4 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆347Nov 20, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆12Oct 10, 2024Updated last year
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Jan 20, 2025Updated last year
- For finding secrets, tokens and other common mistakes made by developers.☆12Oct 21, 2025Updated 6 months ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Mar 11, 2021Updated 5 years ago
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆358Jul 17, 2023Updated 2 years ago
- This Lab contain the sample codes Basic Labs related to Server-Side Request Forgery attack☆22Nov 13, 2020Updated 5 years ago
- A PoC exploit for CVE-2023-51467 - Apache OFBiz Authentication Bypass☆12Dec 31, 2023Updated 2 years ago