SorceryIE / cfor_exploitLinks
Exploit script for the CFOR vulnerability using Github's GraphQL API
☆21Updated last year
Alternatives and similar repositories for cfor_exploit
Users that are interested in cfor_exploit are comparing it to the libraries listed below
Sorting:
- Android webviews and securiy☆23Updated 2 months ago
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last month
- ☆41Updated 3 weeks ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
- Ffuf output browser☆40Updated 2 years ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- recon.cloud is website that scans AWS, Azure and GCP public cloud footprint this GO tool only utilize its API for getting result to termi…☆23Updated 2 years ago
- Reversing Citrix Gateway for XSS☆17Updated 2 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated last year
- Search for sensitive data in Postman public library. Original work from https://github.com/cosad3s/postleaks☆28Updated 2 years ago
- Unicode Security Toolkit☆40Updated last year
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆39Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆34Updated 9 months ago
- A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆19Updated 2 years ago
- A wrapper around grep, to help you grep for things! - Improved version of gf by @tomnomnom.☆62Updated 2 years ago
- The authentication bypass vulnerability in GitHub Enterprise Server (GHES) allows an unauthorized attacker to access an instance of GHES …☆50Updated last year
- Looks for parameters in urls☆34Updated last year
- Unauthorized Access to Metadata and User Data like CTF☆28Updated last year
- Extracting OSINT Insights from 15TB of GitHub Event Logs☆68Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated 2 years ago
- A blazing fast and fully configurable Blind SQL Injection optimization and automation framework.☆137Updated 6 months ago
- convert secret patterns to gf compatible.☆39Updated 2 years ago
- A tech enumeration toolkit focused on 404 Not found pages.☆25Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆29Updated last year
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- A utility for recursively traversing SSL/TLS certificates for collecting DNS names☆48Updated 2 years ago
- ☆42Updated 2 years ago