dxa4481 / CORS
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.
☆35Updated 7 years ago
Alternatives and similar repositories for CORS:
Users that are interested in CORS are comparing it to the libraries listed below
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 8 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated last year
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Dynamic DNS Update Bruteforce Tool☆29Updated 7 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 7 years ago
- Write Up I write for different CTFs☆12Updated 7 years ago
- A Firefox extension and WebSocket handler that checks S3/Google/Azure buckets while your browse.☆37Updated 4 years ago
- Social Engineering Abusing Google App Scripts☆24Updated 7 years ago
- Wax is a mediocre fuzzer I'm prototyping to test some ideas and get rid of others.☆18Updated 6 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆59Updated 5 years ago
- try privilege escalation changing sudo command☆118Updated 6 years ago
- A Scaleable and Asynchronous Framework for Testing Tools built on Kubernetes☆35Updated 7 years ago
- ☆32Updated 9 years ago
- ☆30Updated 2 years ago
- Disposable Kali Linux containers for Mercury ISS / pentesting engagements.☆38Updated 5 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- CSV injection Vulnerable Script.☆29Updated 7 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- Scan for and exploit Consul agents☆40Updated 5 years ago
- Backup scripts I use on my drives.☆25Updated 7 years ago
- A library to assist in security-testing Unicode enabled applications during fuzzing, XSS, SQLi, etc.☆42Updated 7 years ago
- ☆25Updated 7 years ago
- XXE vulnerability demo☆22Updated 10 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- ☆28Updated 8 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 5 years ago
- Puny Domain Name Check☆36Updated 5 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago