Philesiv / XSLeaker
Searcher for cross-site leaks (XS-Leaks)
☆81Updated last year
Related projects ⓘ
Alternatives and complementary repositories for XSLeaker
- Same Origin XSS challenge☆56Updated 2 years ago
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- Awesome MXSS ??☆45Updated last month
- A collection of Server-Side Prototype Pollution gadgets and exploits☆133Updated 2 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆59Updated 2 weeks ago
- ☆158Updated 3 years ago
- List of Trusted Types bypasses☆86Updated 7 months ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆43Updated last week
- Here i will post my writeups :)☆31Updated last year
- ☆30Updated 5 months ago
- ☆92Updated 3 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆26Updated 3 years ago
- Utility for creating ZipSlip archives☆67Updated last year
- ☆56Updated last year
- PP-finder Help you find gadget for prototype pollution exploitation☆138Updated 3 months ago
- ☆65Updated last month
- A collection of utilities for building extensions using Burp's Montoya API☆46Updated 5 months ago
- ☆15Updated 3 years ago
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆35Updated 2 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆40Updated last year
- Challenges I wrote for various CTF competitions☆40Updated 4 months ago
- Dependency Confusion Security Testing Tool☆39Updated 2 years ago
- XS-Leak Browser Test Suite☆73Updated 11 months ago
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆52Updated this week
- Detects request smuggling via HTTP/2 downgrades.☆92Updated 2 years ago
- ☆83Updated 5 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆112Updated 7 months ago