dxa4481 / CORSLinks
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.
☆34Updated 8 years ago
Alternatives and similar repositories for CORS
Users that are interested in CORS are comparing it to the libraries listed below
Sorting:
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Jaqen - Simple DNS rebinding☆74Updated 7 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 8 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 8 years ago
- CTF Write-ups☆26Updated 6 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆90Updated 7 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆95Updated 7 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- vcsmap is a plugin-based tool to scan public version control systems for sensitive information.☆141Updated 3 years ago
- A Firefox extension and WebSocket handler that checks S3/Google/Azure buckets while your browse.☆37Updated 5 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆87Updated 7 years ago
- ☆30Updated 2 years ago
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Write Up I write for different CTFs☆12Updated 7 years ago
- ☆25Updated 8 years ago
- Scan for and exploit Consul agents☆40Updated 6 years ago
- CSV injection Vulnerable Script.☆29Updated 8 years ago
- Wax is a mediocre fuzzer I'm prototyping to test some ideas and get rid of others.☆18Updated 7 years ago
- Testing/collecting some container breakouts☆94Updated 6 years ago
- Highlight Burp proxy requests made by different browsers☆29Updated 7 years ago
- VOIP Security Audit Framework☆108Updated 7 years ago
- Burplay is a Burp Extension allowing for replaying any number of requests using same modifications definition. Its main purpose is to aid…☆83Updated 7 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 7 years ago
- ☆12Updated 8 years ago
- HackerOne Public Disclosure Slack Bot☆20Updated 2 years ago
- radare, angr, pwndbg, binjitsu, ect in a box ready for pwning☆74Updated 9 years ago
- ☆32Updated 10 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 3 years ago
- Growing list of potentially dangerous PHP functions☆52Updated 6 years ago