Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js
☆78Jan 21, 2024Updated 2 years ago
Alternatives and similar repositories for silent-spring
Users that are interested in silent-spring are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of Server-Side Prototype Pollution gadgets and exploits☆241Feb 6, 2025Updated last year
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆49Aug 31, 2025Updated last year
- linux ebpf backdoor demo☆12Nov 20, 2024Updated last year
- PoC☆12Apr 7, 2025Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆57Oct 25, 2023Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- DNS Tunneling as net.Conn☆16Dec 22, 2024Updated last year
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆169Jan 29, 2024Updated 2 years ago
- ☆28Aug 30, 2022Updated 4 years ago
- ☆22Nov 3, 2022Updated 3 years ago
- pwn envs based on docker of ubuntu16.04,18.04,20.04☆11Dec 4, 2022Updated 3 years ago
- ☆17May 26, 2026Updated 4 months ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆119Feb 13, 2026Updated 7 months ago
- ☆23May 11, 2024Updated 2 years ago
- ☆46Jan 2, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Challenges I wrote for various CTF competitions☆45Jul 21, 2024Updated 2 years ago
- kill AV/EDR☆18Jun 9, 2023Updated 3 years ago
- Argument Injection in Dragonfly Ruby Gem☆16May 26, 2021Updated 5 years ago
- ☆17May 29, 2018Updated 8 years ago
- MacroExploit use in excel sheet☆21Jun 12, 2023Updated 3 years ago
- A collection of ctf 'web-pwn' challenges, which require the exploitation of memory-related vulnerabilities within essential web component…☆16Oct 2, 2024Updated last year
- GitHub Entreprise Server SAML authentication bypass (CVE-2025-23369) exploit