aurainfosec / jwt_key_confusion
JWT key confusion attack, i.e. re-sigining RS256 to HS256
☆13Updated 2 years ago
Alternatives and similar repositories for jwt_key_confusion:
Users that are interested in jwt_key_confusion are comparing it to the libraries listed below
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆31Updated last year
- Security Advisories☆32Updated last year
- This repo contain scripts written for finding subdomains using various available tools☆26Updated 4 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 8 months ago
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- ☆25Updated 2 years ago
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆25Updated 5 months ago
- Script for Bug Bounty☆28Updated 3 years ago
- SALSA 💃⚡ - SALesforce Scanner for Aura (and beyond). Enumeration of vulnerabilities and misconfigurations against Salesforce endpoint.☆20Updated 3 weeks ago
- Python script to launch burp scans automatically☆32Updated 3 years ago
- HTTP requests of FrontPage expolit☆25Updated 11 years ago
- A browser bookmark to show hidden fields and enable disabled fields on a web page☆18Updated last year
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 6 months ago
- ☆36Updated 2 weeks ago
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv1 from eLearnSecurity☆23Updated 4 years ago
- Make exploiting race conditions in web applications highly efficient and ease-of-use.☆23Updated 9 months ago
- CTF challenges WriteUp☆14Updated 2 years ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆28Updated last month
- ☆12Updated 3 years ago
- ☆15Updated 3 years ago
- A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆18Updated 2 years ago
- Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.☆28Updated 2 years ago
- ☆26Updated last year
- Ffuf output browser☆39Updated last year
- [Confluence] CVE-2023-22527 realworld poc☆18Updated last year
- Application for showcasing Android Deep Link and WebView Vulnerabilities☆14Updated last year
- A collection of Burp Suite Lambda Filters ~ Bambdas☆25Updated 4 months ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆27Updated 2 months ago