amirnsahmad / smuggler
Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3
☆13Updated 2 years ago
Alternatives and similar repositories for smuggler:
Users that are interested in smuggler are comparing it to the libraries listed below
- Create subdomains and files wordlists from your browser history☆12Updated 2 years ago
- ☆25Updated 3 weeks ago
- Burp Extension to identify PII data☆21Updated 4 years ago
- 😛 Primefaces 5.X EL Injection Exploit (CVE-2017-1000486)☆18Updated last year
- ☆16Updated 5 months ago
- pugrecon is a bash script for automatic recon of common vulnerabilities, misconfigurations and files on domains.☆23Updated 4 years ago
- ASNPepper - Recon in ASN - Extracting CIDR's - Fast and efficient scanning☆18Updated 5 months ago
- Easily gather all routes related to a NextJs application through parsing of _buildManifest.js☆64Updated 2 years ago
- CLI tool for discovering related base domains using WhoisXMLAPI's reverse Whois endpoints☆10Updated 9 months ago
- This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains a…☆49Updated 2 months ago
- A websocket-based reverse (javascript) shell for XSS attacks.☆29Updated 2 years ago
- PoC for the CVE-2021-4034 vulnerability, affecting polkit < 0.120.☆24Updated 3 years ago
- ☆7Updated last year
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆55Updated 2 years ago
- ☆49Updated 3 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- burp extension for brazilian stuff☆27Updated last year
- This tool is an efficient scanner designed to detect Cache Deception vulnerabilities in web servers. It automates the process of testing …☆23Updated last week
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 3 years ago
- ☆13Updated last year
- A better way of querying certificate transparency logs☆84Updated 3 months ago
- crtdumper is a Go application designed to interact directly with Certificate Transparency (CT) logs servers and extract domain names fro…☆26Updated 9 months ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆39Updated last year
- Tool to start a python http server in a simple way☆10Updated 3 years ago
- Application for showcasing Android Deep Link and WebView Vulnerabilities☆14Updated 2 years ago
- is a tool to automate and organize reconnaissance operations.☆24Updated last year
- ☆46Updated 2 years ago
- Pipe nmap verbose output to a usable format for httpx or host:port notation.☆16Updated 2 years ago
- Formatify is a Burp Suite extension that instantly converts HTTP requests into multiple formats like cURL, Python, PowerShell, and more—s…☆21Updated 3 weeks ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year