google / csp-evaluatorLinks
☆381Updated 11 months ago
Alternatives and similar repositories for csp-evaluator
Users that are interested in csp-evaluator are comparing it to the libraries listed below
Sorting:
- WebAppSec Content Security Policy☆221Updated 3 months ago
- Content released at NorthSec 2018 for my talk on prototype pollution☆532Updated last year
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆239Updated 5 months ago
- The request.bin of DNS request☆240Updated 7 years ago
- A collection of browser-based side channel attack vectors.☆759Updated last year
- XS-Leaks Wiki☆175Updated 8 months ago
- Security Crawl Maze is a comprehensive testbed for web security crawlers. It contains pages representing many ways in which one can link …☆165Updated 2 months ago
- research☆152Updated last year
- Cure53 Browser Security White Paper☆300Updated 8 years ago
- A tool to perform Sequential Import Chaining☆283Updated 6 years ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆452Updated last week
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆212Updated 2 years ago
- Automatically exported from code.google.com/p/domxsswiki☆546Updated 7 years ago
- Simple DNS Rebinding Service☆722Updated 6 years ago
- Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆210Updated last year
- ☆561Updated 10 months ago
- Zip Slip Vulnerability (Arbitrary file write through archive extraction)☆818Updated 5 months ago
- A Node.js vulnerability finding tool.☆96Updated 6 months ago
- A tiny and cute URL fuzzer☆402Updated 3 years ago
- ☆270Updated 2 years ago
- Probe a rendering engine for vulnerabilities and other features☆367Updated 4 years ago
- ☆144Updated 3 years ago
- DOM XSS scanner for Single Page Applications☆417Updated 2 months ago
- SSRF Proxy facilitates tunneling HTTP communications through servers vulnerable to Server-Side Request Forgery.☆478Updated 8 years ago
- ☆694Updated 3 years ago
- XSS payloads for exploiting Markdown syntax☆491Updated last year
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆50Updated 8 years ago
- API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities☆407Updated 8 years ago
- SAML2 Burp Extension☆438Updated 2 weeks ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆388Updated last year