SorceryIE / cfor_exploitLinks
Exploit script for the CFOR vulnerability using Github's GraphQL API
☆21Updated last year
Alternatives and similar repositories for cfor_exploit
Users that are interested in cfor_exploit are comparing it to the libraries listed below
Sorting:
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆38Updated last year
 - A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
 - Android webviews and securiy☆23Updated last month
 - The authentication bypass vulnerability in GitHub Enterprise Server (GHES) allows an unauthorized attacker to access an instance of GHES …☆50Updated last year
 - Exploits Unauth Docker API☆41Updated 6 months ago
 - ☆41Updated last week
 - A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆90Updated last year
 - TunnelX is a lightweight ingress tunneling tool designed to create a secure SOCKS5 proxy server for routing network traffic.☆59Updated last month
 - CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆33Updated last year
 - recon.cloud is website that scans AWS, Azure and GCP public cloud footprint this GO tool only utilize its API for getting result to termi…☆23Updated 2 years ago
 - A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year
 - Make better use of the embedded browser that comes by default with Burp☆45Updated last year
 - A collection of utilities for building extensions using Burp's Montoya API☆52Updated last week
 - A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆18Updated 2 years ago
 - ☆21Updated last month
 - ☆14Updated 5 months ago
 - The largest collection of wordlists in yaml for bug bounty tools☆37Updated last year
 - Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated 11 months ago
 - Unauthorized Access to Metadata and User Data like CTF☆27Updated 11 months ago
 - Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
 - A utility for recursively traversing SSL/TLS certificates for collecting DNS names☆48Updated 2 years ago
 - Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
 - Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF☆51Updated 3 months ago
 - Extracting OSINT Insights from 15TB of GitHub Event Logs☆68Updated 2 years ago
 - HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 3 years ago
 - A set of open-source community scripts☆65Updated last year
 - ☆24Updated 11 months ago
 - Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
 - Burp Extension to add additional functionality for pentesting websocket based applications☆99Updated 2 months ago
 - Unicode Security Toolkit☆39Updated last year