PortSwigger / web-cache-deception-scanner
A Burp Extension to test applications for vulnerability to the Web Cache Deception attack
☆18Updated 7 years ago
Alternatives and similar repositories for web-cache-deception-scanner:
Users that are interested in web-cache-deception-scanner are comparing it to the libraries listed below
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 3 years ago
- ☆30Updated last year
- REST API backend for Reconmap☆46Updated this week
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆58Updated 5 years ago
- Burp extension for quickly copying request/response data.☆29Updated 2 weeks ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 3 years ago
- Critical Remote Code Execution Vulnerability (CVE-2018-11776) Found in Apache Struts.☆14Updated 4 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 5 months ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Updated 4 years ago
- Query various sources for CVE proof-of-concepts☆51Updated last year
- Web CTF CheatSheet 🐈☆34Updated 6 years ago
- ☆19Updated 3 years ago
- Fast and lightweight Web Application Firewall Fingerprinting tool☆62Updated 4 months ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆75Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Burp extension to generate multi-step CSRF POC.☆30Updated 5 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆76Updated 4 years ago
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆25Updated 4 years ago
- Copy as XMLHttpRequest BurpSuite extension☆31Updated 4 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 3 years ago
- Writeup of CVE-2020-15906☆48Updated 4 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Updated 10 months ago
- ☆23Updated 2 years ago
- Take domains on stdin and output them on stdout if they get resolved☆33Updated 2 years ago
- ☆26Updated 2 years ago
- Subdomain Enumeration Wordlist. 8956437 unique words. Updated.☆74Updated 4 years ago
- Exploits developed by Mikael Kall☆47Updated last year
- Use normal web pentest tools to hack Websockets☆18Updated 5 years ago
- ☆39Updated last year
- ☆52Updated 6 months ago