MuhammadKhizerJaved / Insecure-Firebase-ExploitLinks
A simple Python Exploit to Write Data to Insecure/vulnerable firebase databases! Commonly found inside Mobile Apps. If the owner of the app have set the security rules as true for both "read" & "write" an attacker can probably dump database and write his own data to firebase db.
☆325Updated last year
Alternatives and similar repositories for Insecure-Firebase-Exploit
Users that are interested in Insecure-Firebase-Exploit are comparing it to the libraries listed below
Sorting:
- ☆432Updated 4 years ago
- Unofficial documentation for the great tool Param Miner☆185Updated 3 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆254Updated 4 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆325Updated 6 months ago
- Turbo Intruder Scripts☆227Updated 5 years ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆238Updated 3 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆393Updated 5 years ago
- Secret and/or credential patterns used for gf.☆243Updated 2 years ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆301Updated 2 years ago
- A Firefox Web Extension to improve the discovery of DOM XSS.☆285Updated last year
- Automating XSS using Bash☆359Updated 2 months ago
- A list of useful payloads and Bypass for Web Application Security and Bug Bounty/CTF☆171Updated 5 years ago
- A tool for exploring Firebase datastores.☆235Updated 5 months ago
- Random utilities from my security projects that might be useful to others☆183Updated 11 months ago
- Automated tool for domains & subdomains gathering☆191Updated 2 years ago
- The Serverless Blind XSS App☆339Updated 8 months ago
- Burp Extension for easily creating Wordlists☆214Updated 4 years ago
- Js File Scanner☆169Updated 4 years ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆282Updated last year
- Customisable and automated HTTP header injection☆270Updated last year
- A Burp Suite extension for CSRF proof of concepts.☆57Updated 2 years ago
- ☆157Updated 2 years ago
- ☆300Updated 3 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆163Updated 3 years ago
- Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.☆345Updated this week
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆559Updated 10 months ago
- The scripts helps security analsts to identify misconfigured firebase instances.☆228Updated 3 years ago
- A fast and minimal JS endpoint extractor☆384Updated last year
- Insecure Firebase | Bugbounty | Hacking Insecure Firbase☆93Updated 4 years ago
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆234Updated 3 years ago