dwisiswant0 / ppfuzzLinks
A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀
☆652Updated 4 months ago
Alternatives and similar repositories for ppfuzz
Users that are interested in ppfuzz are comparing it to the libraries listed below
Sorting:
- HTTP Request Smuggling Detection Tool☆534Updated 2 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆516Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆940Updated 4 years ago
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆746Updated 4 years ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆403Updated 4 years ago
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆770Updated 3 years ago
- Content-Type Research☆650Updated 6 months ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆1,034Updated 4 months ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆640Updated 6 months ago
- A fuzzer for detecting open redirect vulnerabilities☆779Updated last year
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆966Updated 4 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆86Updated last year
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hac…☆1,068Updated 4 months ago
- Fetches javascript file from a list of URLS or subdomains.☆825Updated 5 months ago
- a javascript change monitoring tool for bugbounties☆705Updated last year
- Gotator is a tool to generate DNS wordlists through permutations.☆503Updated 3 years ago
- A tool to check a bunch of URLs that contain reflecting params.☆598Updated last year
- Client Side Prototype Pollution Scanner☆523Updated 3 years ago
- ☆382Updated 2 years ago
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆744Updated 2 years ago
- Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!☆382Updated 2 years ago
- ☆557Updated 9 months ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆453Updated 2 years ago
- A wordlist of API names for web application assessments☆860Updated 6 months ago
- ☆523Updated 2 years ago
- Accept URLs on stdin, replace all query string values with a user-supplied value☆859Updated 3 years ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆1,007Updated last year
- Automated learning of regexes for DNS discovery☆385Updated 2 years ago
- This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests a…☆348Updated 4 years ago
- A Security Tool for Enumerating WebSockets☆363Updated 4 years ago