adrgs / fontleak
Fast exfiltration of text using only CSS and Ligatures
☆48Updated 3 weeks ago
Alternatives and similar repositories for fontleak:
Users that are interested in fontleak are comparing it to the libraries listed below
- Awesome MXSS ??☆49Updated 7 months ago
- Some tips for Bug Bounty using LibreOffice☆46Updated 2 months ago
- ☆79Updated 7 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆67Updated 2 months ago
- PP-finder Help you find gadget for prototype pollution exploitation☆159Updated 9 months ago
- Unicode characters that will translate a single character to multiple characters in domain names or TLD's☆41Updated 5 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- A python module to explore the object tree to extract paths to interesting objects in memory.☆91Updated 3 months ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆185Updated 3 months ago
- A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.☆47Updated 5 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆116Updated last month
- HTML Universal Identifier☆64Updated 4 months ago
- Useful configurations for the DomLogger++ extension☆34Updated 8 months ago
- ☆106Updated last year
- Here i will post my writeups :)☆32Updated 2 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆49Updated 2 weeks ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆139Updated 10 months ago
- WConsole Extractor is a python library which automatically exploits a Werkzeug development server in debug mode. You just have to write a…☆53Updated 8 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆89Updated 4 months ago
- Blog about HTTP Request Smuggling, including a demo application.☆26Updated 3 years ago
- Chrome extension for automating CSPT discovery☆81Updated 2 weeks ago
- jxscout superpowers JavaScript analysis for security researchers☆103Updated this week
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated 10 months ago
- Challenges I wrote for various CTF competitions☆41Updated 9 months ago
- Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.☆66Updated this week
- 🛠️ Workflows created by the community☆67Updated this week
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year
- A tool which helps identifying client-side prototype polluting libraries☆39Updated last week
- ☆291Updated last month
- unleashed ffuf☆112Updated 10 months ago