PortSwigger / nice-script
A JavaScript sandbox using proxies
☆20Updated 4 years ago
Alternatives and similar repositories for nice-script:
Users that are interested in nice-script are comparing it to the libraries listed below
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Inject JS to the DOM to find vulnerable JavaScript libraries☆10Updated 4 months ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆43Updated 7 months ago
- JavaScript Static Code Analysis☆24Updated 10 years ago
- A zoo for malicious NPM packages☆20Updated 2 years ago
- Module to prevent SSRF when sending requests in NodeJS. Blocks request to local and private IP addresses☆22Updated 5 months ago
- PostMessage extension☆95Updated 5 years ago
- a shared short domain for XSS and other hacks☆31Updated 2 years ago
- ☆12Updated 2 years ago
- ☆51Updated 8 months ago
- CTF writeups☆30Updated 2 years ago
- Nodejs application intentionally vulnerable to SSRF☆41Updated last year
- Funny project to create an encoder/obfuscator that converts any javascript code into a code that only consist of /[a-z().]/ characters☆76Updated 5 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated last year
- Fast and passive subdomain enumeration.☆15Updated 2 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆46Updated 2 years ago
- Fast browser-based network discovery module☆114Updated 3 years ago
- DirBuster for Node.js☆20Updated 5 years ago
- Playground☆28Updated last month
- A Reflected / Stored / DOM XSS Scanner based on Headless Chrome Node API via Puppeteer☆39Updated 2 years ago
- ☆15Updated 3 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆14Updated 7 years ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- JavaScript parser and sandbox☆78Updated 8 years ago
- Collection of Some Good research Documentation☆27Updated 7 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing☆19Updated 2 years ago
- TC39 proposal for mitigating prototype pollution☆46Updated last year
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago