Kirill89 / prototype-pollution-explainedLinks
Prototype Pollution in JavaScript
☆75Updated 3 years ago
Alternatives and similar repositories for prototype-pollution-explained
Users that are interested in prototype-pollution-explained are comparing it to the libraries listed below
Sorting:
- PostMessage extension☆99Updated 6 years ago
 - Predict Mongo ObjectIds☆145Updated 7 years ago
 - Bruteforce a JWT against a list of passwords☆79Updated 8 years ago
 - Prototype Pollution exploits collection☆34Updated 4 years ago
 - Client-Side Prototype Pollution Tools☆85Updated 4 years ago
 - GraphQL security workshop labs☆116Updated 2 weeks ago
 - Let's check if your target is vulnerable for client side prototype pollution.☆66Updated last year
 - MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆81Updated 2 years ago
 - ☆76Updated 4 years ago
 - Extract relative urls from a heap snapshot☆87Updated 4 years ago
 - A very vulnerable implementation of a GraphQL API.☆61Updated 3 years ago
 - Unpack the source code of React and other Webpacked apps!☆115Updated last month
 - Detectify Crowdsource Challenge☆70Updated 3 years ago
 - Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆210Updated 2 years ago
 - Example of a vulnerable NodeJS+Express+MySQL service☆20Updated 2 years ago
 - xss development frameworks, with the goal of making payload writing easier.☆149Updated last year
 - HTTP request smuggling tools☆18Updated 5 years ago
 - GraphQL security testing tool☆126Updated 3 years ago
 - PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆58Updated 4 years ago
 - Collection of quirky behaviours of code and the CTF challenges that I made around them.☆28Updated 4 years ago
 - ☆72Updated 3 years ago
 - Scan secrets from Continuous Integration Build Logs☆52Updated 6 years ago
 - XSS Payload without Anything.☆106Updated 6 years ago
 - A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Updated 6 years ago
 - A simple way of sending messages from the CLI output to your Slack with webhook.☆116Updated last year
 - Fetch the details of assets hosted on AWS.☆89Updated last year
 - List of domains in scope for bug bounties (HackerOne, Bugcrowd, etc.)☆75Updated 4 years ago
 - A Python based scanner to find potential SSRF parameters in a web application.☆70Updated 4 years ago
 - Workshop given at Hack in Paris 2019☆124Updated 2 years ago
 - DNS and Target HTTP History Local Storage and Search☆64Updated 4 years ago