cezary-sec / awesome-browser-security
A curated list of awesome browser security learning material.
☆137Updated 2 years ago
Alternatives and similar repositories for awesome-browser-security:
Users that are interested in awesome-browser-security are comparing it to the libraries listed below
- ☆176Updated 2 months ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆244Updated 2 months ago
- Resources for Browser Security Research☆34Updated 2 years ago
- Awesome information for WebSockets security research☆258Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- List of Trusted Types bypasses☆86Updated 9 months ago
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆146Updated 5 months ago
- An Intentionally designed Vulnerable Android Application built in Kotlin.☆233Updated 2 years ago
- ☆83Updated 6 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆101Updated this week
- Find CVE PoCs on GitHub☆141Updated last year
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆200Updated last year
- Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js☆61Updated 11 months ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- XS-Leak Browser Test Suite☆73Updated last year
- XS-Leaks Wiki☆156Updated this week
- Same Origin XSS challenge☆56Updated 2 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆169Updated 2 months ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆151Updated 4 months ago
- This is the data that powers the PortSwigger URL validation bypass cheat sheet.☆31Updated 2 months ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆41Updated last year
- A Node.js vulnerability finding tool.☆95Updated 4 years ago
- 🕶 Design fun and insightful CTF challenges☆57Updated 2 years ago
- A structure-aware HTTP fuzzing library☆209Updated last month
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- ☆128Updated 4 years ago
- ☆12Updated last year
- An actively maintained, Self curated notes related to android application security for security professionals, bugbounty hunters, pentes…☆207Updated 3 years ago
- Workshop given at Hack in Paris 2019☆121Updated last year