JacksonGL / NPM-Vuln-PoCLinks
Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]
☆42Updated last year
Alternatives and similar repositories for NPM-Vuln-PoC
Users that are interested in NPM-Vuln-PoC are comparing it to the libraries listed below
Sorting:
- ☆16Updated 7 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- A Node.js vulnerability finding tool.☆96Updated 4 months ago
- A Chrome extension static analysis tool to help aide in security reviews.☆161Updated 2 years ago
- A zoo for malicious NPM packages☆20Updated 3 years ago
- Cure53 Browser Security White Paper☆299Updated 8 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆88Updated 7 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆141Updated last year
- Popcorn - the JSON fuzzer☆22Updated 11 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 6 years ago
- Generic SAST Library☆133Updated 6 months ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- A dashboard for interesting DOM tricks/techniques.☆35Updated 5 years ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆18Updated 4 years ago
- Intentionally Vulnerable Node Applications☆16Updated 5 years ago
- Externalize Java application access to protected resources as log messages.☆43Updated 2 months ago
- ☆71Updated 8 years ago
- A regular expression fuzzer.☆45Updated 7 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆104Updated 6 years ago
- ☆19Updated 7 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 6 years ago
- TLS Redirection☆119Updated 8 years ago
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆80Updated 6 years ago
- ☆81Updated 13 years ago
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆63Updated 5 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆59Updated 6 years ago
- Dockerfile for AFL++ and helpful other tools☆21Updated 5 years ago
- Collection of python helper API's for interacting with LGTM.com in ways the official API doesn't support.☆24Updated 3 years ago
- ☆53Updated 3 weeks ago
- HTML5 WebSocket message fuzzer☆148Updated 7 years ago