Maintaining account persistence via XSS and Oauth
☆78Jan 7, 2019Updated 7 years ago
Alternatives and similar repositories for XSSOauthPersistence
Users that are interested in XSSOauthPersistence are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Burp Suite extension to help make Graphql request more readable☆32Dec 7, 2017Updated 8 years ago
- SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing☆91May 10, 2020Updated 6 years ago
- Small Python library that makes it easy to exploit race conditions in web apps with Requests.☆163May 22, 2023Updated 3 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆266Nov 18, 2021Updated 4 years ago
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆124May 12, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆65Apr 17, 2020Updated 6 years ago
- A demo vulnerable application for stealing sensitive information by abusing Google Chrome cache☆20Jan 19, 2020Updated 6 years ago
- Reverse engineers GQL Schema and generates template payloads☆46Apr 5, 2019Updated 7 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Aug 11, 2021Updated 4 years ago
- DOM XSS scanner for Single Page Applications☆418Nov 15, 2025Updated 8 months ago
- Library Secruity dependency Checker☆12Sep 13, 2019Updated 6 years ago
- Useful Powershell modules.☆11Mar 10, 2017Updated 9 years ago
- Totally legitimate☆11May 15, 2019Updated 7 years ago
- ☆334Jan 8, 2018Updated 8 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A mini webserver with FTP support for XXE payloads☆346Jan 3, 2024Updated 2 years ago
- A series of python scripts for generating weird character combinations for bypassing web application firewalls (WAF) and XSS blockers☆280Oct 29, 2018Updated 7 years ago
- CVE-2019-8449 Exploit for Jira v2.1 - v8.3.4☆69Feb 3, 2020Updated 6 years ago
- ☆51Sep 7, 2017Updated 8 years ago
- Python library created while solving the Matasano Cryptopals challenges☆17Jun 17, 2021Updated 5 years ago
- All the content from my Troopers 19 talk☆11Mar 20, 2019Updated 7 years ago
- A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.☆552Jun 12, 2017Updated 9 years ago
- Funnel is a lightweight yara-based feed scraper☆38May 22, 2023Updated 3 years ago
- BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolu…☆61Oct 8, 2017Updated 8 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Automated blind-xss search for Burp Suite☆284Oct 10, 2019Updated 6 years ago
- Make XSS Great Again☆31Nov 29, 2019Updated 6 years ago
- XXE injection (file disclosure) exploit for Apache OFBiz < 16.11.04☆13Oct 16, 2018Updated 7 years ago
- How To Execute Shellcode via HTA☆141Feb 23, 2018Updated 8 years ago
- A centralized dashboard for running and scheduling WordPress scans powered by wpscan utility.☆77Feb 23, 2020Updated 6 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆583Sep 7, 2021Updated 4 years ago
- Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys☆664Feb 1, 2025Updated last year
- JShell - Get a JavaScript shell with XSS.☆531May 5, 2019Updated 7 years ago
- Simple python script to check against hypothetical JWT vulnerability.☆51Nov 29, 2020Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- XSS payloads for edge cases☆34Nov 13, 2018Updated 7 years ago
- OpenVPN Connect for Windows (MSI) - 3.1.0.361 - Privilege Escalation☆26Feb 28, 2020Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Jun 14, 2018Updated 8 years ago
- ZIP File Raider - Burp Extension for ZIP File Payload Testing☆73Aug 31, 2020Updated 5 years ago
- ☆35Nov 2, 2022Updated 3 years ago
- POC for CVE-2018-15685☆42Aug 24, 2018Updated 7 years ago
- X-Forwarded-For [403 forbidden] enumeration☆99May 3, 2024Updated 2 years ago