dxa4481 / CORSLinks
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.
☆34Updated 8 years ago
Alternatives and similar repositories for CORS
Users that are interested in CORS are comparing it to the libraries listed below
Sorting:
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 8 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆42Updated 8 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆57Updated 4 years ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 9 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 9 years ago
- PoC for an adaptive parallelised DNS prober☆44Updated 8 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆96Updated 7 years ago
- CSV injection Vulnerable Script.☆29Updated 8 years ago
- Write Up I write for different CTFs☆12Updated 8 years ago
- CTF Write-ups☆27Updated 6 years ago
- ☆25Updated 8 years ago
- OAuth Security Cheatsheet☆41Updated 11 years ago
- vcsmap is a plugin-based tool to scan public version control systems for sensitive information.☆142Updated 4 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- Tainted PhantomJS☆52Updated 10 years ago
- Burplay is a Burp Extension allowing for replaying any number of requests using same modifications definition. Its main purpose is to aid…☆83Updated 8 years ago
- Cronbased Dirty Cow Exploit☆30Updated 9 years ago
- ImaegMagick Code Execution (CVE-2016-3714)☆69Updated 9 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated 2 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆88Updated 7 years ago
- Testing/collecting some container breakouts☆94Updated 6 years ago
- proxy poc implementation of STARTTLS stripping attacks☆169Updated 4 years ago
- A regular expression fuzzer.☆45Updated 7 years ago
- Very crude and poorly written HTTP(s) and SMTP bin☆95Updated 5 years ago
- Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created d…☆66Updated last year
- ParrotNG is a tool capable of identifying Adobe Flex applications (SWF) vulnerable to CVE-2011-2461☆48Updated 10 years ago
- A Firefox extension and WebSocket handler that checks S3/Google/Azure buckets while your browse.☆37Updated 5 years ago
- Monitor arbitrary TCP traffic using your HTTP interception proxy of choice☆48Updated 8 years ago