glebarez / padreLinks
Blazing fast, advanced Padding Oracle exploit
☆258Updated 2 months ago
Alternatives and similar repositories for padre
Users that are interested in padre are comparing it to the libraries listed below
Sorting:
- Complex payload encoder☆235Updated last year
- A complete table of results of types comparison in multiple languages☆35Updated 3 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆181Updated last year
- ☆381Updated 2 years ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆308Updated last year
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆280Updated 2 months ago
- Session Hijacking Visual Exploitation☆210Updated last year
- A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers☆353Updated last year
- WebSocket REPL for pentesters☆227Updated last year
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆163Updated 3 weeks ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications (Official BApp Extension Available)☆238Updated 2 weeks ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆149Updated 11 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆163Updated 11 months ago
- Enumerate / Dump Docker Registry☆180Updated last year
- Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z and zip-like (jar, war,…☆111Updated 5 months ago
- A PoC for the CVE-2022-44268 - ImageMagick arbitrary file read☆217Updated 7 months ago
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆389Updated 6 months ago
- A tool to inspect and attack version 1 GUIDs☆238Updated 3 years ago
- ☆125Updated 3 years ago
- A GraphQL enumeration and extraction tool☆133Updated 2 years ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆72Updated 2 years ago
- ☆86Updated 4 months ago
- HTTP/2 Last Frame Synchronization (also known as Single Packet Attack) low Level Library / Tool based on Scapy + Exploit Timing Attacks☆200Updated 5 months ago
- FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily bui…☆169Updated 3 years ago
- ☆153Updated 2 years ago
- A streamlined tool for discovering private TLDs for security research.☆226Updated this week
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆102Updated 4 months ago
- Find CVE PoCs on GitHub☆156Updated 3 months ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆110Updated last year
- unleashed ffuf☆228Updated 3 weeks ago