PortSwigger / http-request-smugglerLinks
☆1,130Updated this week
Alternatives and similar repositories for http-request-smuggler
Users that are interested in http-request-smuggler are comparing it to the libraries listed below
Sorting:
- ☆1,370Updated 2 weeks ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆1,103Updated 2 months ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆440Updated 2 weeks ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,748Updated last year
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,010Updated last year
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,649Updated 2 weeks ago
- A DNS rebinding attack framework.☆1,183Updated 2 months ago
- Finds unknown classes of injection vulnerabilities☆702Updated 4 months ago
- 🎯 Fast CORS misconfiguration vulnerabilities scanner☆1,120Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆893Updated 3 years ago
- List of XSS Vectors/Payloads☆1,321Updated 8 months ago
- Create tar/zip archives that can exploit directory traversal vulnerabilities☆1,022Updated 4 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,430Updated 11 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆639Updated last year
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆734Updated 2 years ago
- Automated HTTP Request Repeating With Burp Suite☆881Updated 3 years ago
- ☆687Updated 3 years ago
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,672Updated 2 weeks ago
- Advanced Burp Suite Logging Extension☆676Updated last year
- A tool for embedding XXE/XML exploits into different filetypes☆1,107Updated 9 months ago
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆752Updated 3 years ago
- The XSS Hunter service - a portable version of XSSHunter.com☆1,532Updated 2 years ago
- GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)☆1,541Updated last year
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,012Updated 4 years ago
- Simple DNS Rebinding Service☆686Updated 5 years ago
- Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.☆871Updated 6 months ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,441Updated 8 months ago
- latest version of scanners for IIS short filename (8.3) disclosure vulnerability☆1,561Updated 2 years ago
- ☆1,191Updated 3 years ago
- A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆1,209Updated last year