h-a-c / jwt-lab
Lab for learning JWT.
☆34Updated 2 years ago
Alternatives and similar repositories for jwt-lab:
Users that are interested in jwt-lab are comparing it to the libraries listed below
- Burp Bounty profiles☆82Updated 3 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆107Updated 3 years ago
- ☆39Updated last year
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆36Updated 4 years ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆120Updated 2 years ago
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆157Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆163Updated 3 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆86Updated 8 months ago
- A Payload Injector for bugbounties written in go☆70Updated 4 years ago
- Host Header Injection Checker☆80Updated 2 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆60Updated last year
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆103Updated 4 years ago
- Dump all available paths and/or endpoints on WADL file.☆90Updated this week
- WordPress Plugin Update Confusion☆67Updated 3 years ago
- CRLF and open redirect fuzzer☆113Updated 3 years ago
- ☆48Updated 4 years ago
- Detects the algorithm of input JWT Token and provide options to generate the new JWT token based on the user selected algorithm.☆99Updated last year
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆64Updated last year
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆57Updated 5 years ago
- ☆71Updated last year
- URL Screenshot Utility☆27Updated last year
- Prototype Pollution Scanner☆109Updated 3 years ago
- ☆91Updated 4 years ago
- A Burp Suite extension for CSRF proof of concepts.☆49Updated last year
- Expand urls into one url for each path depth☆32Updated 4 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 4 years ago