SorceryIE / cfor_exploitLinks
Exploit script for the CFOR vulnerability using Github's GraphQL API
☆19Updated last year
Alternatives and similar repositories for cfor_exploit
Users that are interested in cfor_exploit are comparing it to the libraries listed below
Sorting:
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- Android webviews and securiy☆23Updated 3 weeks ago
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆38Updated last year
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated 10 months ago
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last year
- recon.cloud is website that scans AWS, Azure and GCP public cloud footprint this GO tool only utilize its API for getting result to termi…☆23Updated 2 years ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆29Updated last year
- Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF☆51Updated 2 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
- Unauthorized Access to Metadata and User Data like CTF☆27Updated 10 months ago
- Looks for parameters in urls☆34Updated 11 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 7 months ago
- ☆40Updated 3 months ago
- RabbitMQ exploit and Pentesting guide for penetration tester☆18Updated last year
- Reversing Citrix Gateway for XSS☆16Updated 2 years ago
- ☆24Updated 10 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year
- Exploits Unauth Docker API☆41Updated 5 months ago
- TunnelX is a lightweight ingress tunneling tool designed to create a secure SOCKS5 proxy server for routing network traffic.☆58Updated 3 weeks ago
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆33Updated last year
- A tech enumeration toolkit focused on 404 Not found pages.☆25Updated last year
- Unicode Security Toolkit☆38Updated last year
- Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables us…☆99Updated 7 months ago
- ☆23Updated 7 months ago
- A blazing fast and fully configurable Blind SQL Injection optimization and automation framework.☆137Updated 4 months ago
- Ffuf output browser☆39Updated 2 years ago
- List of fresh and validated DNS resolvers updated every 12h.☆24Updated this week
- convert secret patterns to gf compatible.☆39Updated 2 years ago
- A utility for recursively traversing SSL/TLS certificates for collecting DNS names☆48Updated 2 years ago