dxa4481 / CORSLinks
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.
☆34Updated 7 years ago
Alternatives and similar repositories for CORS
Users that are interested in CORS are comparing it to the libraries listed below
Sorting:
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 8 years ago
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Scan for and exploit Consul agents☆40Updated 5 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 8 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 8 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated 2 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆52Updated 4 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created d…☆67Updated last year
- ☆25Updated 7 years ago
- A websocket proxy☆54Updated 7 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- Social Engineering Abusing Google App Scripts☆24Updated 8 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 6 years ago
- Very crude and poorly written HTTP(s) and SMTP bin☆93Updated 4 years ago
- CTF Write-ups☆26Updated 6 years ago
- PLASMA PULSAR☆69Updated 8 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆29Updated 6 years ago
- Because I can't find scripts to do this anywhere else...☆25Updated 8 years ago
- XXE vulnerability demo☆22Updated 11 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- #HackingTogether☆13Updated 8 years ago
- Collection of tools for web recon and enumeration.☆56Updated 10 years ago
- Holepuncher, A wrapper script to open ports in iptables and start a listener.☆32Updated 9 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- PoC for an adaptive parallelised DNS prober☆44Updated 7 years ago