PwnFunction / Next.js-Flat-Prototype-PollutionLinks
Prototype Pollution using `flat` with Next.js
☆106Updated 3 months ago
Alternatives and similar repositories for Next.js-Flat-Prototype-Pollution
Users that are interested in Next.js-Flat-Prototype-Pollution are comparing it to the libraries listed below
Sorting:
- a CTF web challenge about making screenshots☆224Updated 4 years ago
- Public Roadmap | huntr.dev☆269Updated last year
- Track HackerOne reports and leaderboard changes on programs through a Discord webhook☆33Updated 10 months ago
- Small example repo for looking into log4j CVE-2021-44228☆71Updated 3 years ago
- Prototype Pollution in JavaScript☆75Updated 3 years ago
- Example of a vulnerable NodeJS+Express+MySQL service☆20Updated 2 years ago
- DOM XSS Game☆90Updated 3 years ago
- A Firefox Web Extension to improve the discovery of DOM XSS.☆280Updated last year
- HackerOne Wallpapers☆76Updated 4 years ago
- Client-Side Prototype Pollution Tools☆85Updated 4 years ago
- No longer maintained. Timing attacks on a browsers cache to try to predict websites/subreddits that have been viewed☆12Updated 3 years ago
- 🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables…☆340Updated 3 years ago
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆69Updated 3 years ago
- a Go code to detect leaks in JS files via regex patterns☆148Updated 4 years ago
- Go scripts for finding sensitive data like API key / some keywords in the github repository☆158Updated 3 years ago
- XS-Leaks Wiki☆169Updated 6 months ago
- ☆64Updated last year
- grapX will iterate through the URLs and grep the endpoints with all possible extensions.☆56Updated 4 years ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆298Updated 2 years ago
- ☆130Updated 5 years ago
- List of Trusted Types bypasses☆102Updated last year
- list of regex patterns for oauth / api tokens with provided source☆278Updated 11 months ago
- A tool inspired by sqlmap specifically for MongoDB Injection☆31Updated 5 years ago
- Here i will post my writeups :)☆33Updated 3 years ago
- A tool for exploring Firebase datastores.☆236Updated 4 months ago
- Content-Security-Policy (CSP) Bypass Techniques☆70Updated 5 years ago
- 🌯 Give me a web shell, I'll give you a terminal.☆197Updated 3 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 4 years ago
- Unpack a JavaScript Source Map back into filesystem structure☆185Updated 5 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆184Updated 4 years ago