PortSwigger / server-side-prototype-pollution
☆34Updated 2 years ago
Alternatives and similar repositories for server-side-prototype-pollution:
Users that are interested in server-side-prototype-pollution are comparing it to the libraries listed below
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- ☆53Updated 2 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 3 years ago
- Burp Extension to add additional functionality for pentesting websocket based applications☆91Updated 9 months ago
- Striping CDN IPs from a list of IP Addresses☆75Updated 2 years ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆58Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆27Updated 2 years ago
- ☆33Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆34Updated 4 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated 9 months ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆40Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated last year
- ☆39Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆118Updated last year
- Simple script realizado en bash, para revisión de múltiples hosts para CVE-2022-1388 (F5)☆25Updated 2 years ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆87Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- Hunt SSL Certificates for interesting keywords on major cloud service providers / internet☆39Updated last week
- Determine the running software version of a remote F5 BIG-IP management interface.☆66Updated last year
- ☆25Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆29Updated last year
- ☆25Updated 2 years ago
- Filters and highlights Proxy HTTP history for requests with potentially vulnerable parameters☆23Updated last year
- tool that generates bypasses for open redirects☆52Updated 2 years ago