davidson679 / Bypass-Web-Application-FirewallsLinks
Bypassing-Web-Application-Firewalls-And-XSS-Filters A series of python scripts for generating weird character combinations and lists for BurpSuite Pro for bypassing web application firewalls (WAF) and XSS filters. These python scripts have been created to fuzz wierd combinations: URL Escape Characters HTML Escape Characters Binary …
☆145Updated 4 years ago
Alternatives and similar repositories for Bypass-Web-Application-Firewalls
Users that are interested in Bypass-Web-Application-Firewalls are comparing it to the libraries listed below
Sorting:
- Burp Suite extension to discover assets from HTTP response.☆228Updated 7 months ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆110Updated 6 years ago
- Scan Victim Backup Directories & Backup Files☆180Updated last year
- A collection of scripts to extend Burp Suite☆142Updated 6 years ago
- Exporter is a Burp Suite extension to copy a request to a file or the clipboard as multiple programming languages functions.☆178Updated 3 years ago
- ☆127Updated 3 years ago
- CVE-2017-9506 - SSRF☆189Updated 3 years ago
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆294Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 4 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆182Updated 5 years ago
- Recursive DNS Subdomain Enumerator with dead-end avoidance system (BETA)☆146Updated 4 years ago
- List of configuration files from WEB-INF and META-INF for use in Unvalidated Forwards and JSP Include vulnerabilities.☆82Updated 7 years ago
- Proof of concept for CVE-2020-5902☆72Updated 5 years ago
- this contain the burp pack☆206Updated 8 years ago
- jsonp is a Burp Extension which attempts to reveal JSONP functionality behind JSON endpoints.☆154Updated 4 years ago
- SHELLING - a comprehensive OS command injection payload generator☆111Updated 6 years ago
- Everything you need about Burp Extension Generation☆156Updated 2 years ago
- CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit☆157Updated 4 years ago
- Collection of Bug Bounty Tips☆64Updated 5 years ago
- HTTP.ninja☆151Updated last year
- Fuzzing for LFI using Burpsuite☆64Updated 8 years ago
- Facebook Bug Bounties☆103Updated 4 years ago
- ☆129Updated 7 years ago
- GUI Burp Plugin to ease discovering of security holes in web applications☆150Updated 8 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 6 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆112Updated 2 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆109Updated 3 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆91Updated 6 years ago
- A Burp Extension designed to identify argument injection vulnerabilities.☆122Updated 6 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆274Updated 4 years ago