cispa / http-conformance
Code for our 2024 ACM AsiaCCS Paper "Who's Breaking the Rules? Studying Conformance to the HTTP Specifications and its Security Impact"
☆13Updated 7 months ago
Alternatives and similar repositories for http-conformance
Users that are interested in http-conformance are comparing it to the libraries listed below
Sorting:
- ☆25Updated 2 years ago
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache (ACM CCS 2024)☆10Updated 6 months ago
- QUICforge is an experimental python tool for request forgery attacks with QUIC☆22Updated 3 years ago
- YuraScanner☆42Updated 3 months ago
- ☆38Updated 2 years ago
- Holistic Concolic Execution for Dynamic Web Applications via Symbolic Interpreter Analysis (IEEE S&P 2024)☆11Updated 7 months ago
- A differential fuzzing framework for the QUIC protocol☆17Updated last year
- [NDSS 2024] ReqsMiner is an innovative fuzzing framework developed to discover previously unexamined inconsistencies in CDN forwarding re…☆20Updated 10 months ago
- ☆14Updated 2 years ago
- Grammar-based HTTP/2 fuzzer with mutation ability☆45Updated 2 years ago
- ☆25Updated 2 years ago
- Attacks against QUIC (CVE-2022-30591)☆23Updated 2 years ago
- Atropos: Effective Fuzzing of Web Applications for Server-Side Vulnerabilities☆68Updated 9 months ago
- ☆26Updated last year
- ☆28Updated 2 years ago
- A structure-aware grey box fuzzer based on modeling the input processing logic.☆169Updated 7 months ago
- 一个搜索网络安全领域顶会论文的小工具☆86Updated 6 months ago
- JAW: A Graph-based Security Analysis Framework for Client-side JavaScript☆106Updated 5 months ago
- ☆128Updated last week
- CVE-Bench: A Benchmark for AI Agents’ Ability to Exploit Real-World Web Application Vulnerabilities☆45Updated 3 weeks ago
- ☆28Updated 2 weeks ago
- [CCS'24] An LLM-based, fully automated fuzzing tool for option combination testing.☆76Updated last month
- ☆48Updated 2 years ago
- 爬虫项目,用来爬取huntr网站的cve相关信息☆12Updated 2 years ago
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆154Updated last year
- Witcher is the first framework for using AFL to fuzz web applications.☆87Updated last year
- CodeQL zero to hero blog post series challenges☆122Updated 5 months ago
- ☆21Updated 9 months ago
- PentestAgent is a novel LLM-driven penetration testing framework to automate intelligence gathering, vulnerability analysis, and exploita…☆42Updated 2 months ago
- A grey-box web application Fuzzer☆23Updated 9 months ago