GoSecure / unicode-pentester-cheatsheet
An easy to navigate list of unicode characters that have risky transformations 💥
☆25Updated 3 years ago
Alternatives and similar repositories for unicode-pentester-cheatsheet:
Users that are interested in unicode-pentester-cheatsheet are comparing it to the libraries listed below
- Burp extension to generate multi-step CSRF POC.☆30Updated 5 years ago
- Query various sources for CVE proof-of-concepts☆51Updated last year
- ☆16Updated 3 years ago
- Ffuf output browser☆39Updated 2 years ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 3 years ago
- This extension replaces the default repeater tab name with the URL path of the repeater request.☆22Updated 3 years ago
- Chrome extension to detect possible xsleaks☆12Updated 5 years ago
- ☆16Updated 2 years ago
- an Evil Java RMI Registry.☆49Updated 2 years ago
- Just a simple SMTP server, implementation of @corpix smtpd library☆14Updated 4 years ago
- This extension redacts potentially sensitive header and parameter values from requests using Shannon Entropy analysis.☆12Updated 4 years ago
- Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.☆13Updated 3 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- This script just implement a proxy over h2cSmuggler so you can navigate in your browser making requests to the back-end server.☆37Updated 2 years ago
- Validate proxies for specific domain☆36Updated 3 years ago
- Burp Extension for copying requests safely. It redacts headers like Cookie, Authorization and X-CSRF-Token for now. More support can be a…☆17Updated 4 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated 10 months ago
- Subdomain finder☆10Updated last month
- ☆12Updated 3 years ago
- Insecure Deserialization, PDF and lab☆17Updated 5 years ago
- ☆24Updated 4 years ago
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆18Updated 4 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- Automated compromise detection of the world's most popular packages☆15Updated last year
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated last year
- Extract endpoints from specific Git repository for fuzzing☆23Updated 4 years ago
- ☆10Updated 6 years ago
- Saves pages to Wayback machine☆13Updated 4 months ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 3 years ago