acuciureanu / ppfang
A tool which helps identifying client-side prototype polluting libraries
☆38Updated last week
Alternatives and similar repositories for ppfang:
Users that are interested in ppfang are comparing it to the libraries listed below
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆63Updated last month
- ☆60Updated 2 years ago
- Chrome extension for automating CSPT discovery☆74Updated 2 weeks ago
- A set of open-source community scripts☆61Updated 5 months ago
- Finds graphql queries in javascript files☆60Updated 10 months ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- Tool to parse subdomains from dmarc.live☆73Updated 11 months ago
- ☆74Updated 6 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated last year
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- Security Advisories☆32Updated last year
- Enumerate old versions of robots.txt paths using Wayback Machine for content discovery☆45Updated last year
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated last year
- Archived Please go to https://github.com/adamjsturge/xsshunter-go☆31Updated last year
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆53Updated 5 months ago
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆52Updated 2 months ago
- A really fast http prober.☆39Updated last year
- ☆34Updated 2 years ago
- SALSA 💃⚡ - SALesforce Scanner for Aura (and beyond). Enumeration of vulnerabilities and misconfigurations against Salesforce endpoint.☆21Updated 2 months ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆39Updated last year
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated 10 months ago
- A tool to migrate Burpsuite HTTP history to Caido.☆27Updated 10 months ago
- A Firefox Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆28Updated 4 months ago
- ☆28Updated this week
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- ai-based domain name generation☆82Updated 2 months ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆134Updated 9 months ago