disclose / research-threats
Collection of legal threats against good faith Security Researchers; vulnerability disclosure gone wrong. A continuation of work started by @attritionorg
☆291Updated last year
Related projects ⓘ
Alternatives and complementary repositories for research-threats
- Private key usage verification☆410Updated 10 months ago
- Search for vulnerabilities and exposures while filtering based on age, keywords, and other parameters.☆124Updated 2 years ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆203Updated 3 weeks ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 3 years ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆286Updated this week
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆344Updated 9 months ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated last year
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆68Updated 2 years ago
- Coverage-based fuzzer for python applications☆233Updated 2 years ago
- Qubes containerization on Windows☆130Updated 3 years ago
- CQ, a code security scanner☆97Updated 6 months ago
- search Google and extract results directly. skip all the click-through links and other sketchiness☆494Updated 2 years ago
- QEMU setup for emulating satellite firmware for Hack-A-Sat final event☆87Updated 2 years ago
- Binary Golf Grand Prix☆110Updated last year
- A curated list of awesome browser security learning material.☆130Updated 2 years ago
- Repository for information about 0-days exploited in-the-wild.☆759Updated 3 weeks ago
- High speed/Low cost CommonCrawl RegExp in Node.js☆243Updated 7 months ago
- Burp with Friends☆99Updated last year
- An Open Letter to the OWASP Board☆106Updated last year
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆196Updated 5 years ago
- Database of polyglot files. By polyglot, we mean files readable in multiple formats☆126Updated 6 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- An extensively configurable tool providing a summary of the changes between two files or directories, ignoring all the fluff you don't ca…☆201Updated 2 years ago
- XS-Leaks Wiki☆151Updated 3 months ago
- Trail of Bits Testing Handbook☆58Updated last month
- ☆227Updated last year
- ☆128Updated 3 years ago
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆240Updated 2 years ago