SorceryIE / cfor_exploitLinks
Exploit script for the CFOR vulnerability using Github's GraphQL API
☆22Updated last year
Alternatives and similar repositories for cfor_exploit
Users that are interested in cfor_exploit are comparing it to the libraries listed below
Sorting:
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- recon.cloud is website that scans AWS, Azure and GCP public cloud footprint this GO tool only utilize its API for getting result to termi…☆25Updated 2 years ago
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆40Updated last year
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated last year
- Unauthorized Access to Metadata and User Data like CTF☆28Updated last year
- Android webviews and securiy☆23Updated 4 months ago
- ☆42Updated 2 months ago
- Make better use of the embedded browser that comes by default with Burp☆44Updated 2 years ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆115Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 months ago
- The authentication bypass vulnerability in GitHub Enterprise Server (GHES) allows an unauthorized attacker to access an instance of GHES …☆50Updated last year
- Exploits Unauth Docker API☆43Updated 9 months ago
- Saves pages to Wayback machine☆13Updated last year
- H&E- Burp Highlighter and Extractor☆18Updated 2 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆21Updated last year
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated 2 years ago
- Looks for parameters in urls☆34Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated last year
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆34Updated last year
- The largest collection of wordlists in yaml for bug bounty tools☆37Updated last year
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 3 years ago
- Extracting OSINT Insights from 15TB of GitHub Event Logs☆68Updated 2 years ago
- Unicode Security Toolkit☆40Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- ☆27Updated 2 years ago
- Ffuf output browser☆40Updated 2 years ago
- A utility for recursively traversing SSL/TLS certificates for collecting DNS names☆48Updated 2 years ago
- Reversing Citrix Gateway for XSS☆17Updated 2 years ago
- crtdumper is a Go application designed to interact directly with Certificate Transparency (CT) logs servers and extract domain names fro…☆41Updated last year
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆90Updated 2 years ago