doyensec / Prototype-Pollution-Gadgets-Finder
☆77Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for Prototype-Pollution-Gadgets-Finder
- Burp Extension for a passive scanning JS files for endpoint links.☆50Updated last month
- Burp Suite Extension - Trigger actions and reshape HTTP request/response and WebSocket traffic using configurable rules☆92Updated last week
- Endpoints Explorer is a Python script that employs multiple bypass rules to discover sensitive endpoints☆83Updated 5 months ago
- Advanced SQL Injection Techniques for Bug Bounty Hunters☆66Updated 3 months ago
- Burp Suite's extension to scan and crawl Single Page Applications☆99Updated last year
- All Nuclei Templates☆61Updated 3 weeks ago
- Nuclei Templates to reproduce Cracking the lens's Research☆121Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated 9 months ago
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆85Updated 7 months ago
- BChecks collection for Burp Suite Professional☆81Updated 5 months ago
- Improve automated and semi-automated active scanning in Burp Pro☆60Updated 2 years ago
- Time Based SQL Injection in Zabbix Server Audit Log --> RCE☆114Updated 5 months ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆116Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆103Updated 4 months ago
- CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.☆49Updated last year
- CVE-2023-34960 Chamilo PoC☆35Updated last year
- WEB API fuzzing☆24Updated last year
- CVE-2023-25157 - GeoServer SQL Injection - PoC☆163Updated last year
- bounty collection☆28Updated 2 months ago
- ☆55Updated 2 years ago
- WebLogic vulnerability exploration from beginner to expert.☆154Updated last year
- A Burp Suite extension and standalone application for creating and editing JSON Web Tokens. This tool supports signing and verification o…☆35Updated 2 years ago
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆51Updated 5 months ago
- burpsuite extension☆13Updated last year
- A Burp Suite extension for creating and editing JSON Web Tokens. This tool supports signing and verification of JWS, encryption and decry…☆21Updated last month
- ☆71Updated 6 months ago
- unleashed ffuf☆95Updated 4 months ago
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆74Updated 5 months ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆20Updated 2 months ago