bahruzjabiyev / t-reqsLinks
Grammar-based HTTP/1 fuzzer with mutation ability
☆258Updated last year
Alternatives and similar repositories for t-reqs
Users that are interested in t-reqs are comparing it to the libraries listed below
Sorting:
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆74Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆54Updated 2 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆47Updated 3 years ago
- ☆205Updated 2 weeks ago
- CodeQL zero to hero blog post series challenges☆159Updated 2 months ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆114Updated 2 months ago
- AutoSpear☆69Updated last year
- A structure-aware HTTP fuzzing library☆217Updated last week
- Black box fuzzer for web applications☆434Updated 4 months ago
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆210Updated 2 years ago
- A guided mutation-based fuzzer for ML-based Web Application Firewalls☆194Updated last year
- Same Origin XSS challenge☆64Updated 3 years ago
- A curated list of awesome browser security learning material.☆145Updated 3 years ago
- XBOW Validation Benchmarks☆359Updated 5 months ago
- XS-Leak Browser Test Suite☆86Updated last year
- jws2pubkey tool☆41Updated 5 months ago
- A variant analysis and visualisation tool that scans codebases for similar vulnerabilities☆73Updated 3 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆346Updated 3 years ago
- FUGIO: Automatic Exploit Generation for PHP Object Injection Vulnerabilities☆96Updated 2 years ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆40Updated 3 months ago
- Companion repository of the "Dancer in the Dark" paper.☆20Updated last year
- A Python implementation that facilitates finding timeless timing attack vulnerabilities.☆128Updated 7 months ago
- Compiled dataset of Java deserialization CVEs☆60Updated 5 years ago
- ☆111Updated 3 years ago
- Link sources to sinks in C# applications.☆150Updated 2 years ago
- When MVC magic turns black☆296Updated 5 years ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆215Updated 10 months ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆128Updated 2 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆107Updated 5 months ago