Metnew / uxss-db
πͺBrowser logic vulnerabilities
β690Updated 4 years ago
Alternatives and similar repositories for uxss-db:
Users that are interested in uxss-db are comparing it to the libraries listed below
- A tiny and cute URL fuzzerβ391Updated 2 years ago
- A tool for embedding XXE/XML exploits into different filetypesβ1,067Updated 2 months ago
- A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniquesβ716Updated 5 years ago
- A collection of curated Java Deserialization Exploitsβ594Updated 3 years ago
- Some of my exploits.β575Updated 3 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.β347Updated 2 years ago
- My Chrome and Safari exploit code + write-up repoβ527Updated 3 years ago
- SHELLING - a comprehensive OS command injection payload generatorβ444Updated 4 years ago
- Browser's XSS Filter Bypass Cheat Sheetβ1,119Updated 7 years ago
- HTTP file upload scanner for Burp Proxyβ486Updated last year
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!β603Updated 5 years ago
- Content hijacking proof-of-concept using Flash, PDF and Silverlightβ381Updated 5 years ago
- β261Updated 5 years ago
- SSRF Proxy facilitates tunneling HTTP communications through servers vulnerable to Server-Side Request Forgery.β456Updated 7 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scansβ575Updated 3 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)β290Updated last year
- Cure53 Browser Security White Paperβ288Updated 7 years ago
- Finds unknown classes of injection vulnerabilitiesβ651Updated last year
- Create tar/zip archives that can exploit directory traversal vulnerabilitiesβ992Updated 3 years ago
- Apache Solr Injection Researchβ572Updated 5 years ago
- From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extrasβ425Updated 5 years ago
- β418Updated 7 years ago
- All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilitiesβ780Updated 3 years ago
- Fuzzing Browsersβ310Updated 2 years ago
- β686Updated 2 months ago
- A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.β826Updated 3 weeks ago
- Another way to bypass WAF Cheat Sheet (draft)β418Updated 6 years ago
- An updated collection of resources targeting browser-exploitation.β813Updated 3 years ago
- Search for Directory Traversal Vulnerabilitiesβ426Updated 8 months ago
- Collection of bypass gadgets to extend and wrap ysoserial payloadsβ351Updated 2 years ago