A framework for the detection of COSI vulnerabilities / XS-Leaks
☆14Mar 29, 2023Updated 3 years ago
Alternatives and similar repositories for Basta-COSI
Users that are interested in Basta-COSI are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A proposal to standardize security semantics of cross-site cookies☆16Dec 7, 2023Updated 2 years ago
- Stats about HTTP response security headers usage mentioned by the OSHP.☆16Jan 25, 2026Updated 7 months ago
- Following OWASP TOP 10 (the top ten most critical web application security risk) I decided to build an XSS Scanner.☆12Dec 12, 2022Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Dec 27, 2022Updated 3 years ago
- AWS,AZURE,GOOGLE CLOUD IP CIDRS☆50Feb 14, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- ☆27Jul 30, 2021Updated 5 years ago
- Burp Suite extension to log GraphQL operations as a comment☆24Aug 9, 2021Updated 5 years ago
- Just some bash scripting to help your recon.☆16Feb 4, 2026Updated 7 months ago
- HTTP requests of FrontPage expolit☆26Dec 19, 2013Updated 12 years ago
- PoC List☆10Sep 4, 2022Updated 4 years ago
- ☆18Apr 26, 2021Updated 5 years ago
- Find XS-Leaks in the browser by diffing DOM-Graphs in two states☆20Jun 24, 2026Updated 2 months ago
- Supporting material for the frida scripting guide☆22Jul 2, 2022Updated 4 years ago
- Remote Code Execution EJS Web Applications using express-fileupload☆12Aug 17, 2021Updated 5 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A quick way to perform a bulk whois query. Utilizes Team Cymru's service. Requires netcat.☆11Feb 11, 2012Updated 14 years ago
- A polyglot static analysis engine for detecting vulnerabilities in scripting languages native extensions based on joern.☆22Sep 1, 2025Updated last year
- ☆16Jan 9, 2025Updated last year
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆10Sep 22, 2023Updated 2 years ago
- nxdomain subdomain enumeration☆10Jul 17, 2022Updated 4 years ago
- Removes duplicate entries from a file, resulting in only unique parameter combinations. Useful for parsing waybackurls and making recon m…☆12May 31, 2020Updated 6 years ago
- This Burp Suite extension enables the generation of shareable links to specific requests which other Burp Suite users can import.☆13May 20, 2022Updated 4 years ago
- Android application penetration testing for the masses.☆14Apr 12, 2019Updated 7 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Jun 23, 2024Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- XSS payloads for bypassing WAF. This repository is updating continuously.☆10Aug 8, 2021Updated 5 years ago
- XSS-Freak is an xss scanner fully written in python3 from scratch. it is one of its kind since it crawls the website for all possible lin…☆15Nov 25, 2019Updated 6 years ago
- Gathers urls from common crawl☆35Nov 9, 2019Updated 6 years ago
- Bug Bounty Tools☆34Jul 2, 2020Updated 6 years ago
- Simple command shell collections☆35Mar 7, 2021Updated 5 years ago
- Ruby ARP Toolkit☆14Apr 15, 2021Updated 5 years ago
- Return domains in CSP headers in http response☆16Aug 17, 2021Updated 5 years ago
- This extension redacts potentially sensitive header and parameter values from requests using Shannon Entropy analysis.