engn33r / awesome-redos-securityLinks
List of RegEx DoS (ReDoS) CVEs and resources
β27Updated 2 years ago
Alternatives and similar repositories for awesome-redos-security
Users that are interested in awesome-redos-security are comparing it to the libraries listed below
Sorting:
- a repository of all the CTF challenges I've made for public eventsβ53Updated this week
- A curated list of awesome blogs and tools about HTTP request smuggling attacks. Feel free to contribute! π»β124Updated 2 years ago
- Burp plugin for the 1Password session protocol for use by security researchers.β71Updated last month
- β56Updated 3 years ago
- List all public repositories for (valid) GitHub usernamesβ74Updated last year
- DOM Clobbering Wiki, Browser Testing, and Payload Generationβ53Updated 2 months ago
- β72Updated 3 years ago
- HTTP3-attacks (CVE-2022-30592)β78Updated 2 years ago
- PoC for iTerm2 CVEs CVE-2024-38396 and CVE-2024-38395 which allow code executionβ19Updated last year
- π Knowledge Base on the Security of Chromium Extensions (https://extensions.neplox.security)β19Updated 5 months ago
- A cheatsheet for exploiting server-side SVG rasterization.β29Updated 3 years ago
- β19Updated 10 months ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVEβ2021β44228)?β45Updated 3 years ago
- Target practice for ffufβ67Updated 3 years ago
- Challenges I wrote for various CTF competitionsβ44Updated 11 months ago
- β94Updated 3 years ago
- Automated privilege escalation of the world's most popular Docker images.β67Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messagesβ36Updated last year
- *Unofficial* lgtm.com CLI β Use at your own risk. Also don't add more than 3K projects to "My projects" list.β13Updated 3 years ago
- Using EPUBs for the semi-automated evaluation of security and privacy implications of EPUB reading systems.β32Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)β82Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya APIβ50Updated last year
- No longer maintained. Timing attacks on a browsers cache to try to predict websites/subreddits that have been viewedβ12Updated 3 years ago
- A vulnerability fuzzing tool written in bash, it contains the most commonly used tools to perform vulnerability scanβ79Updated 4 years ago
- Make exploiting race conditions in web applications highly efficient and ease-of-use.β23Updated 3 weeks ago
- π³ VMs are bloat. Dockerise your VAPT environmentβ76Updated 2 months ago
- Scripts for Sourcegraph search results. Useful for static analysis <3β28Updated 2 years ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulnerβ¦β15Updated last year
- A tool which helps identifying client-side prototype polluting librariesβ39Updated 2 months ago
- Extract endpoints marked as disallow in robots files to generate wordlists.β57Updated 3 years ago