A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozilla-firefox/firefox). It can be used to identify insecure data flows or data privacy leaks in client-side web applications.
☆177Jul 29, 2026Updated last month
Alternatives and similar repositories for project-foxhound
Users that are interested in project-foxhound are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆119Feb 13, 2026Updated 6 months ago
- Discovered Data and Source Code☆10May 5, 2025Updated last year
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆95Aug 25, 2025Updated last year
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆18May 17, 2021Updated 5 years ago
- ☆15Feb 11, 2023Updated 3 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆18Sep 4, 2023Updated 3 years ago
- OmniCrawl is a web measurement tool that allows for recording of web requests and JavaScript browser API accesses on multiple platforms.☆28Mar 20, 2024Updated 2 years ago
- TP-Framework: Testability Pattern Framework for SAST☆17May 10, 2024Updated 2 years ago
- Performant taint analysis for Node.js☆58Aug 7, 2024Updated 2 years ago
- A collection of ctf 'web-pwn' challenges, which require the exploitation of memory-related vulnerabilities within essential web component…☆16Oct 2, 2024Updated last year
- A instrumented variant of the V8 JavaScript Engine☆291Jul 15, 2026Updated last month
- TaintFlow, a framework for JavaScript dynamic information flow analysis.☆17Jan 18, 2023Updated 3 years ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆49Aug 31, 2025Updated last year
- SWAT, a dynamic symbolic execution engine for Java Applications that uses ASM for on-the-fly byte code instrumentation.☆47Updated this week
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Testability Pattern Catalogs for SAST☆36Feb 18, 2025Updated last year
- A crawler that uses OpenWPM.☆12Dec 26, 2021Updated 4 years ago
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆25Jun 27, 2024Updated 2 years ago
- Instrumentation framework for Node.js compliant to ECMAScript 2020 based on GraalVM.☆61Jan 18, 2025Updated last year
- This Chromium extensions aims at supporting the analysis of single sign-on implementations, by offering semi-automated analysis and attac…☆31Jul 4, 2023Updated 3 years ago
- ☆12Jan 8, 2016Updated 10 years ago
- ☆57Jun 23, 2025Updated last year
- A Web Platform API proposal for Blob URL☆12Feb 24, 2023Updated 3 years ago
- Proof-of-concept implementation of the Obelix software hardening framework, based on LLVM.☆12May 22, 2024Updated 2 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆77Jan 21, 2024Updated 2 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆60Dec 18, 2025Updated 8 months ago
- Crawler based on a modified browser to detect online tracking.☆11Jul 19, 2023Updated 3 years ago
- Cookie Crumbles: Breaking and Fixing Web Session Integrity☆23Aug 9, 2023Updated 3 years ago
- interpret CPython in pure Python☆19Jul 5, 2026Updated last month
- Artifacts of the paper "Arcanum: Detecting and Evaluating the Privacy Risks of Browser Extensions on Web Pages and Web Content" in USENIX…☆19Aug 9, 2024Updated 2 years ago
- Gather pagegraph data from all over the internet☆33Updated this week
- YuraScanner☆84Feb 13, 2025Updated last year
- Dynamic analysis framework for JavaScript☆495Jan 10, 2026Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆31May 1, 2025Updated last year
- Why vulnerability discovery is difficult mathematically☆28Jul 19, 2026Updated last month
- Stats about HTTP response security headers usage mentioned by the OSHP.☆16Jan 25, 2026Updated 7 months ago
- Artifact release for our IEEE Symposium on Security and Privacy 2021 paper entitled Fingerprinting the Fingerprinters: Learning to Detect…☆74Mar 31, 2021Updated 5 years ago
- Modular static malicious JavaScript detection system☆76Jan 18, 2021Updated 5 years ago
- This repository is a collection of JavaScript gadgets that can be used to bypass XSS mitigations such as Content Security Policy (CSP) an…☆149Feb 4, 2026Updated 7 months ago
- CVE-Bench: A Benchmark for AI Agents’ Ability to Exploit Real-World Web Application Vulnerabilities☆277Jan 14, 2026Updated 7 months ago