JonCooperWorks / httpfuzzLinks
☆67Updated 4 years ago
Alternatives and similar repositories for httpfuzz
Users that are interested in httpfuzz are comparing it to the libraries listed below
Sorting:
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 3 years ago
- ☆169Updated 4 years ago
- a deterministic finite automata ranker☆72Updated 3 years ago
- A GraphQL enumeration and extraction tool☆133Updated 2 years ago
- Find CVE PoCs on GitHub☆156Updated 4 months ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆90Updated 3 years ago
- ☆95Updated 4 years ago
- ☆72Updated 4 years ago
- ☆15Updated 2 weeks ago
- Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z and zip-like (jar, war,…☆112Updated 6 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆34Updated 9 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last month
- SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients☆70Updated 4 years ago
- ☆33Updated 2 years ago
- Query various sources for CVE proof-of-concepts☆52Updated 2 years ago
- A black-box scanner for HTTP request smuggling vulnerabilities caused by chunk parsing discrepancies.☆24Updated last month
- A collection of my Semgrep rules☆50Updated 2 years ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆16Updated 2 years ago
- A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆19Updated 2 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- An extension to use Semgrep inside Burp Suite.☆89Updated 6 months ago
- Burp Extension to add additional functionality for pentesting websocket based applications☆100Updated 3 months ago
- Searching for virtual hosts among non-resolvable domains☆88Updated 5 years ago
- ☆56Updated 4 years ago
- ☆41Updated 3 weeks ago
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own☆74Updated last year
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated last year
- The following package is the standalone wordlist-only component to flask-unsign.☆43Updated last year
- jws2pubkey tool☆41Updated 5 months ago