vulnerable single sign on
☆152Aug 1, 2024Updated 2 years ago
Alternatives and similar repositories for vulnerable-sso
Users that are interested in vulnerable-sso are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆21Nov 13, 2019Updated 6 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆791Aug 21, 2023Updated 2 years ago
- ☆39Sep 28, 2019Updated 6 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆105Feb 11, 2019Updated 7 years ago
- Cheat Sheets, Metodologies etc.☆19Apr 12, 2019Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆14Nov 29, 2019Updated 6 years ago
- Scan secrets from Continuous Integration Build Logs☆53Oct 14, 2019Updated 6 years ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆277Feb 11, 2021Updated 5 years ago
- Salesforce Policy Deviation Checker☆30Sep 30, 2020Updated 5 years ago
- Burp Suite extension to help make Graphql request more readable☆29Dec 7, 2017Updated 8 years ago
- Auto Recon Bash Script☆31Dec 31, 2024Updated last year
- web-based-fuzzer☆31Jun 26, 2020Updated 6 years ago
- ☆10Oct 30, 2019Updated 6 years ago
- This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabi…☆360Mar 6, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Fuzzing for LFI using Burpsuite☆69Oct 4, 2016Updated 9 years ago
- Sample vulnerable code and its exploit code☆189Mar 14, 2021Updated 5 years ago
- CVE-2019-12949☆25Jun 28, 2019Updated 7 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Jun 19, 2018Updated 8 years ago
- New Found 0-days!☆34Dec 4, 2019Updated 6 years ago
- DOM XSS scanner for Single Page Applications☆420Nov 15, 2025Updated 9 months ago
- A passive subdomain finder☆334Apr 19, 2023Updated 3 years ago
- Security Testing Scripts for JWT☆332Mar 13, 2026Updated 5 months ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆41Mar 15, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- CORS checking☆34Jul 16, 2018Updated 8 years ago
- CTF Writeups☆12Feb 25, 2023Updated 3 years ago
- CVE-2017-9506 - SSRF☆192Feb 14, 2022Updated 4 years ago
- Lesser Known Web Attack Lab☆330Feb 7, 2020Updated 6 years ago
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Mar 22, 2018Updated 8 years ago
- A simple SSRF-testing sheriff written in Go☆338Oct 31, 2024Updated last year
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆19Nov 18, 2019Updated 6 years ago
- Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys☆667Feb 1, 2025Updated last year
- Apache Solr Injection Research☆580Jan 28, 2020Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆686Jan 28, 2024Updated 2 years ago
- Automatic tool for DNS rebinding-based SSRF attacks☆307Aug 21, 2020Updated 5 years ago
- 一个对常见的web日志进行解析处理的粗糙DEMO☆20Jun 3, 2018Updated 8 years ago
- You can read the writeup on this script here☆273Jul 12, 2020Updated 6 years ago
- gathers the XSS cheatsheet payloads and creates a usable wordlist☆74Jan 4, 2021Updated 5 years ago
- BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolu…☆61Oct 8, 2017Updated 8 years ago
- A permutation generation tool written in golang☆213Jul 15, 2019Updated 7 years ago