NDevTK / CacheAttackLinks
No longer maintained. Timing attacks on a browsers cache to try to predict websites/subreddits that have been viewed
☆13Updated 3 years ago
Alternatives and similar repositories for CacheAttack
Users that are interested in CacheAttack are comparing it to the libraries listed below
Sorting:
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 5 years ago
- Client-Side Prototype Pollution Tools☆86Updated 4 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 3 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆32Updated 3 years ago
- ☆56Updated 4 years ago
- ☆170Updated 4 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Dependency Confusion Security Testing Tool☆51Updated 3 years ago
- WordPress Plugin Update Confusion☆66Updated 4 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆60Updated last month
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆58Updated 5 years ago
- A list of threat sinks used in the manual security source code review for application security☆76Updated 2 years ago
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆112Updated last year
- A cheatsheet for exploiting server-side SVG rasterization.☆30Updated 3 years ago
- Same Origin XSS challenge☆64Updated 3 years ago
- A modern postMessage tracker including additional features, inspired by Frans Rosens postmessage tracker. A port of chrome Manifest V3 "F…☆50Updated 4 months ago
- Predict Mongo ObjectIds☆151Updated 7 years ago
- ☆95Updated 4 years ago
- ☆76Updated 5 years ago
- ☆66Updated 3 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆88Updated 3 years ago
- Prototype Pollution Scanner☆135Updated 4 years ago
- ☆73Updated 4 years ago
- Wordlist to bruteforce for LFI☆128Updated 6 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 3 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- Let's check if your target is vulnerable for client side prototype pollution.☆65Updated 2 years ago
- ☆56Updated last year