aress31 / jwtcat
A CPU-based JSON Web Token (JWT) cracker and - to some extent - scanner.
☆306Updated 11 months ago
Alternatives and similar repositories for jwtcat:
Users that are interested in jwtcat are comparing it to the libraries listed below
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆359Updated 8 months ago
- PNG IDAT chunks XSS payload generator☆187Updated 2 years ago
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆529Updated 6 years ago
- Security Testing Scripts for JWT☆312Updated 2 years ago
- An hourly updated list of subdomains gathered from certificate transparency logs☆346Updated 3 years ago
- SSRF testing tool☆244Updated 2 years ago
- DNS rebinding toolkit☆252Updated last year
- Payloads for CRLF Injection☆222Updated 6 months ago
- Pathbrute☆454Updated 4 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆272Updated 4 years ago
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆361Updated last year
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆715Updated 2 years ago
- BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source c…☆548Updated 2 years ago
- The Serverless Blind XSS App☆340Updated 2 months ago
- ☆129Updated 4 years ago
- You can read the writeup on this script here☆272Updated 4 years ago
- Reconnaissance tool which scans javascript files for subdomains and then iterates over all javascript files hosted on subsequent subdomai…☆222Updated 4 years ago
- Common Web Managers Fuzz Wordlists☆172Updated last month
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆378Updated 3 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆258Updated 2 years ago
- Burp Extension written in Jython to hunt for common vulnerabilities found in websites. Developed by Gaurav Narwani to help people find vu…☆236Updated 5 years ago
- HTTP file upload scanner for Burp Proxy☆406Updated 2 years ago
- ☆264Updated 6 years ago
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆313Updated last year
- Open Redirect Payloads☆611Updated 6 months ago
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.☆319Updated 2 weeks ago
- Tool to help exploit XXE vulnerabilities☆560Updated 2 years ago
- Repository for hosting my research papers☆508Updated last year
- Search for Directory Traversal Vulnerabilities☆439Updated 10 months ago
- Client Side Prototype Pollution Scanner☆518Updated 2 years ago