detectify / Varnish-H2-Request-Smuggling
☆55Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for Varnish-H2-Request-Smuggling
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 3 years ago
- ☆92Updated 3 years ago
- Dependency Confusion Security Testing Tool☆39Updated 2 years ago
- Utility for creating ZipSlip archives☆67Updated last year
- Same Origin XSS challenge☆56Updated 2 years ago
- ☆36Updated 4 years ago
- Gopher Tomcat Deployer☆47Updated 6 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year
- ☆64Updated 2 years ago
- ☆69Updated 3 years ago
- ☆21Updated 3 months ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- ☆47Updated 3 years ago
- Query various sources for CVE proof-of-concepts☆49Updated last year
- A Burp Suite extension which augments your proxy traffic by injecting log4shell payloads into headers☆42Updated 2 years ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 2 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆22Updated last month
- Chrome extension to detect possible xsleaks☆12Updated 5 years ago
- A collection of my Semgrep rules☆47Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- This repository contains all the examples related to a series of tutorials that demonstrate how to use the new Montoya API of Burp Suite …☆35Updated this week
- ☆49Updated 4 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆51Updated 2 years ago
- This script just implement a proxy over h2cSmuggler so you can navigate in your browser making requests to the back-end server.☆37Updated 2 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆30Updated last year
- ☆23Updated last year
- Argument Injection in Dragonfly Ruby Gem☆16Updated 3 years ago