cure53 / H5SC
HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors
☆2,873Updated 3 years ago
Alternatives and similar repositories for H5SC:
Users that are interested in H5SC are comparing it to the libraries listed below
- Welcome to the XSS Challenge Wiki!☆1,581Updated 4 years ago
- HTTPLeaks - All possible ways, a website can leak HTTP requests☆2,019Updated 5 months ago
- A container repository for my public web hacks!☆1,984Updated 2 years ago
- Awesome XSS stuff☆4,872Updated 5 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,897Updated 11 months ago
- Browser's XSS Filter Bypass Cheat Sheet☆1,126Updated 7 years ago
- The XSS Hunter service - a portable version of XSSHunter.com☆1,514Updated 2 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,394Updated 5 months ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,396Updated 2 months ago
- scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.☆3,794Updated 2 weeks ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,769Updated 3 years ago
- Git All the Payloads! A collection of web attack payloads.☆3,744Updated last year
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,456Updated last year
- ✍️ A curated list of CVE PoCs.☆3,379Updated 3 years ago
- ☆1,308Updated last month
- Collection of CTF Web challenges I made☆2,715Updated last year
- A collection of browser-based side channel attack vectors.☆745Updated last year
- ☆2,253Updated last year
- Automated NoSQL database enumeration and web application exploitation tool.☆3,033Updated 8 months ago
- DNS Enumeration Script☆2,737Updated last week
- A collection of JavaScript engine CVEs with PoCs☆2,296Updated 5 years ago
- A curated list of amazingly awesome Burp Extensions☆3,110Updated last month
- A python script that finds endpoints in JavaScript files☆3,886Updated 11 months ago
- A repository with 3 tools for pwn'ing websites with .git repositories available☆3,957Updated last year
- The cheat sheet about Java Deserialization vulnerabilities☆3,079Updated last year
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,610Updated 4 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,133Updated last month
- Automatically exported from code.google.com/p/domxsswiki☆525Updated 6 years ago
- Rip web accessible (distributed) version control systems: SVN/GIT/HG...☆1,721Updated 8 months ago
- Web application fuzzer☆6,120Updated 7 months ago