JeppW / smugchunksLinks
A black-box scanner for HTTP request smuggling vulnerabilities caused by chunk parsing discrepancies.
☆30Updated 3 months ago
Alternatives and similar repositories for smugchunks
Users that are interested in smugchunks are comparing it to the libraries listed below
Sorting:
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆158Updated last year
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆103Updated 2 years ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆148Updated last year
- ☆25Updated 10 months ago
- ☆92Updated 2 months ago
- Results from analyzing data gathered from 1.6 billion subdomains☆32Updated last year
- ☆64Updated 2 years ago
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆85Updated 2 weeks ago
- JSSCM detects expired domains for Stored XSS exploitation during browsing.☆58Updated 10 months ago
- Burpsuite plugin for Interact.sh☆230Updated last year
- A tool for monitoring bug bounty programs across multiple platforms to track scope changes.☆32Updated 2 weeks ago
- Improve automated and semi-automated active scanning in Burp Pro☆64Updated 8 months ago
- ☆97Updated 4 years ago
- ☆91Updated last year
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆75Updated 7 months ago
- Modified Nuclei Templates Version to FUZZ Host Header☆52Updated 4 years ago
- ☆32Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated 2 years ago
- Exploits targeting Symfony☆213Updated last year
- BChecks collection for Burp Suite Professional☆102Updated last year
- A plugin for Burp Suite Pro that uses the GraphQL schema to begin Active Scanning the entire endpoint.☆41Updated 3 months ago
- Burp Extension that copies a request and builds a FFUF skeleton☆112Updated 2 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆141Updated last year
- An MS Sharepoint and Frontpage Auditing Tool☆57Updated last year
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 3 years ago
- This is the data that powers the PortSwigger URL validation bypass cheat sheet.☆57Updated 4 months ago
- Extract JavaScript files from burp suite project with ease.☆97Updated 3 years ago
- Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀☆126Updated 6 months ago
- 🐛 A list of writeups from the MSRC (Microsoft) Bug Bounty program☆30Updated 3 months ago
- ☆110Updated last year