PortSwigger / web-cache-deception-scanner
A Burp Extension to test applications for vulnerability to the Web Cache Deception attack
☆16Updated 7 years ago
Alternatives and similar repositories for web-cache-deception-scanner:
Users that are interested in web-cache-deception-scanner are comparing it to the libraries listed below
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 3 years ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 3 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 4 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Updated 4 years ago
- ☆52Updated 4 months ago
- Query various sources for CVE proof-of-concepts☆51Updated last year
- Burp extension to generate multi-step CSRF POC.☆29Updated 5 years ago
- ☆30Updated 11 months ago
- This little script for gathering chaos.projectdiscovery.io recon data in an organized way and finding the daily differences on it☆17Updated 4 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 4 months ago
- Burp extension for quickly copying request/response data.☆29Updated 2 weeks ago
- ☆48Updated 4 years ago
- ☆15Updated 3 years ago
- HTTP requests of FrontPage expolit☆25Updated 11 years ago
- ☆35Updated 2 months ago
- Burp Suite extension to discover assets from HTTP response.☆16Updated 3 years ago
- A Burp Suite extension which augments your proxy traffic by injecting log4shell payloads into headers☆42Updated 3 years ago
- Manual JavaScript Linting is a Bug☆49Updated 4 years ago
- ☆50Updated 2 years ago
- Copy as XMLHttpRequest BurpSuite extension☆31Updated 3 years ago
- Basic implementation of certstream to print new subdomains and domains☆36Updated 3 years ago
- ☆70Updated 3 years ago
- Compiles a list of major CDN and WAF subnets.☆65Updated this week
- Extract endpoints marked as disallow in robots files to generate wordlists.☆56Updated 3 years ago
- Spring Boot Actuator (jolokia) XXE/RCE☆22Updated 6 years ago
- Kubernetes Scanner☆40Updated 3 years ago
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆18Updated 3 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆76Updated 4 years ago
- Take domains on stdin and output them on stdout if they get resolved☆33Updated 2 years ago