JacksonGL / NPM-Vuln-PoC
Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]
☆43Updated 10 months ago
Alternatives and similar repositories for NPM-Vuln-PoC:
Users that are interested in NPM-Vuln-PoC are comparing it to the libraries listed below
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- ☆16Updated 6 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 5 years ago
- Generic SAST Library☆131Updated 5 months ago
- Scripts and auxiliary files for fuzzing PHP's unserialize function☆43Updated 7 years ago
- A Chrome extension static analysis tool to help aide in security reviews.☆154Updated last year
- PIOF - PHP Instrumentation Open Framework - A dynamic and modular instrumentation framework for PHP language.☆9Updated 6 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 5 years ago
- ☆70Updated 7 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago
- A regular expression fuzzer.☆43Updated 7 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 6 years ago
- A tool for detecting regular expression denial-of-service vulnerabilities in Android apps.☆34Updated 8 years ago
- ☆17Updated 6 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆50Updated 7 years ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- Dockerfile for AFL++ and helpful other tools☆21Updated 4 years ago
- PoC for leaking text nodes via CSS injection☆36Updated 6 years ago
- An extended Node.js runtime with additional security mechanisms built-in. Protects your Node.js applications from injection attacks such …☆31Updated 3 years ago
- Smart DNS Brute Forcer☆22Updated 12 years ago
- JWT fuzzer☆106Updated 6 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆138Updated 4 years ago
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆62Updated 4 years ago
- Fuzz testing: Beginner's guide☆76Updated last year
- A repository for GraphQL Extension for Burp Suite☆57Updated 6 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago
- BSidesSF CTF 2019 release☆71Updated 2 years ago
- Exploitation challenges for CTF☆63Updated 7 years ago