GoSecure / unicode-pentester-cheatsheetLinks
An easy to navigate list of unicode characters that have risky transformations 💥
☆25Updated 3 years ago
Alternatives and similar repositories for unicode-pentester-cheatsheet
Users that are interested in unicode-pentester-cheatsheet are comparing it to the libraries listed below
Sorting:
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆30Updated 3 years ago
- Query various sources for CVE proof-of-concepts☆53Updated 2 years ago
- an Evil Java RMI Registry.☆51Updated 2 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆57Updated last year
- ☆95Updated 4 years ago
- Ffuf output browser☆40Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 months ago
- WebSocket Connection Smuggler☆47Updated 3 years ago
- Tool to extract & validate google fcm server keys from apks☆29Updated 5 years ago
- ☆25Updated last year
- Generate a dynamic PAC script that will route traffic to your Burp proxy only if it matches the scope defined in your Burp target.☆34Updated 4 years ago
- A companion repo to accompany detailed guides and YouTube content to allow users to follow along☆13Updated 5 years ago
- spk aka spritzgebaeck: A small OSINT/Recon tool to find CIDRs that belong to a specific organization.☆84Updated 3 weeks ago
- This script just implement a proxy over h2cSmuggler so you can navigate in your browser making requests to the back-end server.☆36Updated 3 years ago
- HTTP requests of FrontPage expolit☆26Updated 12 years ago
- Burp extension to generate multi-step CSRF POC.☆31Updated 6 years ago
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆25Updated 5 years ago
- Related subdomains finder☆29Updated 3 years ago
- Combine words from two wordlist files and concatenate them with an optional delimiter☆39Updated 2 years ago
- ☆170Updated 4 years ago
- Make better use of the embedded browser that comes by default with Burp☆44Updated 2 years ago
- Return domains in CSP headers in http response☆16Updated 4 years ago
- Automated compromise detection of the world's most popular packages☆17Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 4 years ago
- The format of various s3 buckets is convert in one format. for bugbounty and security testing.☆86Updated 2 years ago
- SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients☆70Updated 4 years ago
- ☆16Updated 3 years ago
- ☆33Updated last year
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆16Updated 4 years ago
- A Burp Suite extension which augments your proxy traffic by injecting log4shell payloads into headers☆42Updated 4 years ago