gluckzhang / ctf-jwt-tokenLinks
An example of a vulnerability in the early JWT token node.js library
☆37Updated 2 years ago
Alternatives and similar repositories for ctf-jwt-token
Users that are interested in ctf-jwt-token are comparing it to the libraries listed below
Sorting:
- Blog about HTTP Request Smuggling, including a demo application.☆29Updated 3 years ago
- Learning source code review, spot vulnerability, find some ways how to fix it.☆29Updated 2 years ago
- Writeups of some of the Binary Exploitation challenges that I have solved during CTF.☆21Updated 8 months ago
- Source for Pentester Land☆36Updated 2 years ago
- HTTP Desync Attack☆28Updated 5 years ago
- My writeups of various CTFs & security challenges☆73Updated last week
- ☆21Updated last month
- Cyber Jawara 2018 Final - Attack & Defense CTF services environments based on Docker.☆74Updated 6 years ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆29Updated 5 years ago
- A miscellany of thoughts.☆47Updated last year
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 4 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆58Updated 4 years ago
- ☆72Updated 3 years ago
- Pythonize Intruder Payload☆13Updated 4 years ago
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- A collection of my Semgrep rules☆50Updated 2 years ago
- [180+ scripts] There are a few genuine gems in there. And a lot of spaghetti code. Most of these scripts were for solving CTF's. If you …☆63Updated 2 years ago
- XXE Injection Payloads☆28Updated 6 years ago
- ☆66Updated 4 years ago
- Proof of Concept exploit scripts and fuzzing templates. Companion blog posts located at https://epi052.gitlab.io/notes-to-self/blog/2020…☆64Updated 5 years ago
- Make exploiting race conditions in web applications highly efficient and ease-of-use.☆25Updated 3 months ago
- A cheatsheet for exploiting server-side SVG rasterization.☆30Updated 3 years ago
- Scanner For Nginx - Remote Integer Overflow Vulnerability☆36Updated 6 months ago
- CVE, reports, research☆15Updated 4 years ago
- Insecure Deserialization, PDF and lab☆18Updated 5 years ago
- ☆32Updated 2 months ago
- A python-based padding oracle tool☆20Updated last year
- BurpSuite Extension for performing scan via CLI.☆11Updated 7 years ago
- Query various sources for CVE proof-of-concepts☆51Updated 2 years ago