Zigrin-Security / CakeFuzzer
Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based on specific frameworks with very limited false positives.
☆93Updated 9 months ago
Related projects: ⓘ
- First iteration of ML based Feedback WAF☆54Updated 6 months ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆84Updated 7 months ago
- ☆91Updated this week
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆92Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆49Updated last year
- Unicode Security Toolkit☆25Updated last week
- ☆50Updated last week
- WEB-Wordlist-Generator creates related wordlists after scanning your web applications.☆41Updated 3 months ago
- My talks...☆23Updated 11 months ago
- Scanner for CVE-2023-22515 - Broken Access Control Vulnerability in Atlassian Confluence☆73Updated 11 months ago
- Scripts to download every Wordpress plugin (updated in the last 2 years) and run Semgrep over the lot of it while storing output in a dat…☆37Updated 3 weeks ago
- Find CVE PoCs on GitHub☆136Updated 11 months ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆19Updated last year
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆63Updated 6 months ago
- ☆70Updated 2 months ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆59Updated 2 weeks ago
- ☆24Updated last year
- A GraphQL enumeration and extraction tool☆127Updated last year
- Cloud Exploit Framework☆112Updated 2 years ago
- A command-line utility for performing reverse DNS lookups☆57Updated last year
- REST-Attacker is designed as a proof-of-concept for the feasibility of testing generic real-world REST implementations. Its goal is to pr…☆76Updated last year
- a simple discovery script that uses popular tools like subfinder, amass, puredns, alterx, massdns and others☆75Updated 9 months ago
- ☆27Updated last year
- An extension to use Semgrep inside Burp Suite.☆86Updated last year
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆118Updated 5 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆45Updated 6 months ago
- ☆54Updated last year
- Proof of Concept Exploit for PaperCut CVE-2023-27350☆46Updated last year
- Filters and highlights Proxy HTTP history for requests with potentially vulnerable parameters☆22Updated 9 months ago
- Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks☆64Updated 2 years ago