Hannah-PortSwigger / WebSocketTurboIntruderLinks
Fuzz WebSockets with custom Python code
☆19Updated last year
Alternatives and similar repositories for WebSocketTurboIntruder
Users that are interested in WebSocketTurboIntruder are comparing it to the libraries listed below
Sorting:
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆11Updated 2 years ago
- Burp Suite Extension - Trigger actions and reshape HTTP request/response and WebSocket traffic using configurable rules☆105Updated 2 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆56Updated 2 years ago
- ☆44Updated 6 months ago
- Burp Suite's extension to scan and crawl Single Page Applications☆107Updated 2 years ago
- Confluence Hardcoded Password POC☆15Updated 3 years ago
- CVE-2022-41852 Proof of Concept (unofficial)☆75Updated 3 years ago
- ☆12Updated 4 years ago
- ☆27Updated 3 years ago
- Atlassian Jira Server/Data Center 8.4.0 - Arbitrary File read (CVE-2021-26086)☆24Updated 4 years ago
- Introduction to CYS4-SensitiveDiscoverer, a Burp extension that discovers sensitive information inside HTTP messages.☆24Updated last year
- Exploiting XXE Vulnerabilities on Microsoft SharePoint Server and Cloud via Confused URL Parsing☆32Updated last year
- Research analysis☆56Updated 2 months ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆61Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆90Updated 2 years ago
- CVE-2022-32119 - Arox-Unrestricted-File-Upload☆17Updated 2 years ago
- Lexmark CVE-2023-26067☆28Updated 2 years ago
- ☆19Updated 3 years ago
- A Burp extension to show the Collaborator client in a tab☆24Updated 3 years ago
- CVE-2025-31324, SAP Exploit☆23Updated 9 months ago
- WEB API fuzzing☆23Updated 9 months ago
- Playground for Race Condition attack☆24Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 2 years ago
- Apache Superset Auth Bypass (CVE-2023-27524)☆11Updated 2 years ago
- ☆29Updated last year
- Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is writt…☆99Updated 2 years ago
- Case for CVE-2022-30778☆23Updated 3 years ago
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆24Updated last year
- tool that generates bypasses for open redirects☆52Updated 3 years ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆29Updated last year