fuzz-security / MobileApp-Pentest-CheatsheetLinks
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
☆71Updated 5 years ago
Alternatives and similar repositories for MobileApp-Pentest-Cheatsheet
Users that are interested in MobileApp-Pentest-Cheatsheet are comparing it to the libraries listed below
Sorting:
- Slides and other material from various conference presentations.☆46Updated 4 months ago
- Compiled dataset of Java deserialization CVEs☆60Updated 5 years ago
- A curated list of awesome blogs and tools about HTTP request smuggling attacks. Feel free to contribute! 🍻☆125Updated 3 years ago
- Clone me and get your own authentic Parsia-Clone today.☆46Updated 2 weeks ago
- ☆97Updated 4 years ago
- ☆65Updated 4 years ago
- Practice hacking JWT tokens☆116Updated 3 years ago
- ☆34Updated 3 years ago
- This repository contains all the examples related to a series of tutorials that demonstrate how to use the new Montoya API of Burp Suite …☆47Updated last month
- Workshop given at Hack in Paris 2019☆126Updated 2 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Nothing special --- Some resources to save my time☆20Updated 5 years ago
- ☆56Updated 4 years ago
- Burp Bounty profiles☆81Updated 4 years ago
- A Web-UI for subdomain enumeration (subfinder)☆56Updated 5 years ago
- Exporter is a Burp Suite extension to copy a request to a file or the clipboard as multiple programming languages functions.☆178Updated 4 years ago
- Fuzzing script for redirect URL validator☆53Updated 6 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆112Updated 3 years ago
- URL Screenshot Utility☆28Updated 2 years ago
- ☆60Updated 7 years ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆29Updated 6 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆129Updated 3 years ago
- A tampered payload generator to Fuzz Web Application Firewalls☆35Updated 6 years ago
- Authenticated SSRF in Grafana☆84Updated last year
- Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly☆52Updated 2 years ago
- Gopher Tomcat Deployer☆48Updated 7 years ago
- all domains and his subdoamins☆64Updated 5 years ago
- ☆87Updated last year
- Intentionally vulnerable webview implementions in Android☆59Updated 3 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆48Updated 5 years ago