WhiteOakSecurity / Dynamic-DTD
A python Flask app that generates dynamic DTDs for easy out-of-band data exfiltration.
☆30Updated 2 years ago
Alternatives and similar repositories for Dynamic-DTD:
Users that are interested in Dynamic-DTD are comparing it to the libraries listed below
- ☆34Updated last year
- User enumeration and password spraying tool for testing Azure AD☆69Updated 3 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- ☆54Updated 9 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 8 months ago
- ☆26Updated last year
- Jenkins pre-auth RCE exploit. More info at https://jenkins.io/security/advisory/2019-01-08/#SECURITY-1266 https://blog.orange.tw/2019/02/…☆10Updated 5 years ago
- Copy as XMLHttpRequest BurpSuite extension☆31Updated 3 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆24Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated this week
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆29Updated last year
- Custom scan profiles for use with Burp Suite Pro☆122Updated 11 months ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- Review of AWAE.OSWE☆31Updated 2 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆131Updated 5 months ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆86Updated last year
- ☆39Updated last year
- CVE-2021-38647 - POC to exploit unauthenticated RCE #OMIGOD☆68Updated 3 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆112Updated last year
- offensive notes & resources☆40Updated last month
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- Checks if files is accessible based on the source code.☆16Updated 11 months ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 2 years ago
- A list of "secrets" from JWT sample code and readme files.☆54Updated 4 years ago
- ☆52Updated 2 years ago
- Repo for OSWE related video content for @SecAura Youtube Channel☆32Updated 3 years ago
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- HTTP verb tampering & methods enumeration☆56Updated 2 years ago