SoheilKhodayari / Basta-COSILinks
A framework for the detection of COSI vulnerabilities / XS-Leaks
☆14Updated 2 years ago
Alternatives and similar repositories for Basta-COSI
Users that are interested in Basta-COSI are comparing it to the libraries listed below
Sorting:
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆31Updated 2 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- List of Trusted Types bypasses☆101Updated last year
- Labs from our workshop "Demystifying the server-side".☆17Updated 3 years ago
- XS-Leak Browser Test Suite☆83Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆51Updated last year
- Client-Side Prototype Pollution Tools☆85Updated 3 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆55Updated 4 months ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆81Updated 2 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 6 months ago
- The commands and scripts I used in the Live Recon Village talks☆38Updated 4 years ago
- CircleCI log and security configuration automations☆22Updated 4 years ago
- Burp Extension to identify PII data☆21Updated 4 years ago
- Dependency Confusion Security Testing Tool☆49Updated 3 years ago
- CVE PoCs☆21Updated 5 years ago
- File system enumerator and monitor for Android and Ubuntu.☆17Updated 3 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆43Updated last week
- ☆16Updated 4 years ago
- CTF write-ups☆97Updated 9 months ago
- ☆56Updated 4 years ago
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆53Updated last week
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 3 years ago
- ☆12Updated 2 years ago
- A simple Google Protobuf Decoder for Burp☆43Updated 2 years ago
- ☆72Updated 3 years ago
- ☆57Updated 7 months ago
- ☆18Updated 4 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 4 years ago
- Service-Now Article Bruteforcer☆16Updated 5 years ago