bahruzjabiyev / gudifu-fuzzerLinks
Guided Differential Fuzzing for HTTP Request Parsing Discrepancies
☆17Updated last year
Alternatives and similar repositories for gudifu-fuzzer
Users that are interested in gudifu-fuzzer are comparing it to the libraries listed below
Sorting:
- ☆18Updated 2 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 9 months ago
- ☆35Updated last month
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 3 months ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆44Updated last year
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆48Updated last year
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆36Updated last year
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated last year
- Utility for creating ZipSlip archives☆72Updated 2 years ago
- ☆37Updated last year
- A tool which allows HackerOne researchers to download their reports into a local, indexed, and searchable repository☆18Updated 2 years ago
- My talks...☆24Updated 3 months ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆26Updated 8 months ago
- Security Advisories☆32Updated last month
- Script to exploit Grafana CVE-2025-4123: XSS and Full-Read SSRF☆23Updated last week
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 4 months ago
- ☆63Updated 2 years ago
- Bcheck scripts for Burp☆28Updated 9 months ago
- Proof of Concepts for unsafe deserialization in Ruby☆16Updated 7 months ago
- POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library☆17Updated 8 months ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆31Updated 2 years ago
- An extension to use Semgrep inside Burp Suite.☆89Updated last week
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated last year
- Looks for parameters in urls☆34Updated 7 months ago
- Simple WebSocket fuzzer☆32Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆28Updated 9 months ago
- A collection of my Semgrep rules☆49Updated last year