google / csp-evaluator
☆330Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for csp-evaluator
- WebAppSec Content Security Policy☆210Updated last month
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆231Updated this week
- Security Crawl Maze is a comprehensive testbed for web security crawlers. It contains pages representing many ways in which one can link …☆155Updated 9 months ago
- research☆150Updated 8 months ago
- A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.☆606Updated this week
- XS-Leaks Wiki☆150Updated 3 months ago
- Cure53 Browser Security White Paper☆286Updated 6 years ago
- The request.bin of DNS request☆231Updated 6 years ago
- A tool to perform Sequential Import Chaining☆254Updated 5 years ago
- Simple DNS Rebinding Service☆627Updated 4 years ago
- A collection of browser-based side channel attack vectors.☆740Updated 8 months ago
- Content released at NorthSec 2018 for my talk on prototype pollution☆515Updated 5 months ago
- ☆528Updated 11 months ago
- A Node.js vulnerability finding tool.☆95Updated 4 years ago
- Automatically exported from code.google.com/p/domxsswiki☆518Updated 6 years ago
- ☆266Updated last year
- ☆655Updated 2 years ago
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆197Updated last year
- A simple SSRF-testing sheriff written in Go☆316Updated 2 weeks ago
- ☆141Updated last year
- ☆228Updated 2 months ago
- ☆958Updated 11 months ago
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆196Updated 5 years ago
- ☆1,245Updated last week
- SHELLING - a comprehensive OS command injection payload generator☆107Updated 5 years ago
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆701Updated 3 months ago
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆308Updated last year
- This repository includes a set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard cer…☆280Updated 4 months ago
- The Web Application Vulnerability Scanner Evaluation Project☆228Updated 2 years ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆405Updated this week