adrgs / fontleak
Fast exfiltration of text using only CSS and Ligatures
☆28Updated this week
Alternatives and similar repositories for fontleak:
Users that are interested in fontleak are comparing it to the libraries listed below
- Awesome MXSS ??☆49Updated 6 months ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆183Updated 2 months ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆48Updated 5 months ago
- ☆84Updated 9 months ago
- Searcher for cross-site leaks (XS-Leaks)☆81Updated 2 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆156Updated 8 months ago
- Here i will post my writeups :)☆32Updated 2 years ago
- Challenges I wrote for various CTF competitions☆41Updated 8 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆89Updated 3 months ago
- HTML Universal Identifier☆64Updated 4 months ago
- This is the data that powers the PortSwigger URL validation bypass cheat sheet.☆44Updated last month
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆63Updated last month
- ✨ Build a beautiful and simple website in literally minutes. Demo at https://beautifuljekyll.com☆21Updated 2 years ago
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated last year
- ☆74Updated 6 months ago
- jxscout superpowers JavaScript analysis for security researchers☆76Updated last week
- Useful configurations for the DomLogger++ extension☆34Updated 7 months ago
- CTF write-ups☆82Updated 4 months ago
- ☆103Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆45Updated last year
- Some tips for Bug Bounty using LibreOffice☆46Updated last month
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆115Updated 2 weeks ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆87Updated 5 months ago
- Blog about HTTP Request Smuggling, including a demo application.☆25Updated 3 years ago
- All challenges from DiceCTF 2023☆72Updated 2 years ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆136Updated 9 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆62Updated last year
- A python module to explore the object tree to extract paths to interesting objects in memory.☆91Updated 2 months ago
- ☠️ Code for the Defcon Workshop☆23Updated 8 months ago