digininja / svg_xss
Defending against XSS in SVG files
☆30Updated 5 years ago
Alternatives and similar repositories for svg_xss:
Users that are interested in svg_xss are comparing it to the libraries listed below
- Hacking Artifactory with server side template injection☆51Updated 4 years ago
- Automatically identify serialization issues in PHP Frameworks by means of an Burp Suite active scan☆42Updated 4 months ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆45Updated 4 years ago
- services-names-wordlist☆79Updated 2 months ago
- A Web-UI for subdomain enumeration (subfinder)☆54Updated 4 years ago
- ☆27Updated 5 years ago
- ☆43Updated 2 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆88Updated 5 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆62Updated 3 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆14Updated 7 years ago
- Broken Link Hijacking Burp Extension☆56Updated 5 years ago
- A Burp Extension designed to identify argument injection vulnerabilities.☆120Updated 5 years ago
- Burp Bounty is a extension of Burp Suite that improve an active and passive scanner by yourself. This extension requires Burp Suite Pro.☆70Updated 2 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that improve an active and passive scanner by yourself. This …☆60Updated 3 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆66Updated 3 years ago
- WordPress <= 5.3.? DoS☆24Updated 5 years ago
- PrestaShop (1.6.x <= 1.6.1.23 or 1.7.x <= 1.7.4.4) Back Office Remote Code Execution (CVE-2018-19126)☆40Updated 6 years ago
- Compiles a list of major CDN and WAF subnets.☆63Updated this week
- ☆36Updated 4 years ago
- Gopher Tomcat Deployer☆47Updated 6 years ago
- Clone me and get your own authentic Parsia-Clone today.☆44Updated last month
- ☆52Updated 2 months ago
- Tool is to check for Cache Deception Attack Both For Authenticated and UnAuthenticated Pages☆43Updated 3 years ago
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30Updated 4 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 4 years ago
- websocket-connection-smuggler☆68Updated 5 years ago
- Authenticated SSRF in Grafana☆79Updated 7 months ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆75Updated 4 years ago
- Automated HTTP Request Repeating With Burp Suite☆65Updated last year