bhaveshk90 / Content-Security-Policy-CSP-Bypass-TechniquesLinks
Content-Security-Policy (CSP) Bypass Techniques
☆70Updated 5 years ago
Alternatives and similar repositories for Content-Security-Policy-CSP-Bypass-Techniques
Users that are interested in Content-Security-Policy-CSP-Bypass-Techniques are comparing it to the libraries listed below
Sorting:
- Enumerate / Dump Docker Registry☆180Updated last year
- PP-finder Help you find gadget for prototype pollution exploitation☆184Updated last year
- LFI to RCE via phpinfo() assistance or via controlled log file☆73Updated 2 years ago
- FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily bui…☆171Updated 3 years ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆105Updated 4 months ago
- Directory scans☆84Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆82Updated last year
- ☆90Updated last week
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆151Updated last year
- CVE Collection of jQuery UI XSS Payloads☆120Updated 2 years ago
- A better way of querying certificate transparency logs☆88Updated 8 months ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆157Updated last year
- Exploits targeting Symfony☆209Updated last year
- Wordlist to bruteforce for LFI☆128Updated 6 years ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications (Official BApp Extension Available)☆238Updated last month
- ☆54Updated 10 months ago
- Some tips for Bug Bounty using LibreOffice☆55Updated 9 months ago
- Custom scan profiles for use with Burp Suite Pro☆146Updated last year
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆101Updated last year
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated 2 years ago
- Collected fuzzing payloads from different resources☆123Updated last year
- A tool that automates the search for IDOR vulnerabilities in web apps and APIs☆63Updated 4 years ago
- ☆28Updated last year
- ☆42Updated 2 years ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆310Updated last year
- ☆159Updated 3 years ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆74Updated 6 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆79Updated 2 years ago
- ☆138Updated last year
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆112Updated last year