hackvertor / blind-css-exfiltration
☆87Updated 11 months ago
Related projects ⓘ
Alternatives and complementary repositories for blind-css-exfiltration
- A collection of Server-Side Prototype Pollution gadgets and exploits☆132Updated 2 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆115Updated last week
- PP-finder Help you find gadget for prototype pollution exploitation☆137Updated 3 months ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆103Updated 4 months ago
- ☆65Updated last month
- Awesome MXSS ??☆45Updated last month
- Useful configurations for the DomLogger++ extension☆30Updated 2 months ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆63Updated 7 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆60Updated 3 months ago
- EvenBetter is a frontend Caido plugin that makes the Caido experience even better 😎☆133Updated last week
- ☆134Updated 3 weeks ago
- Header Exploitation HTTP☆142Updated this week
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆86Updated 9 months ago
- Finds graphql queries in javascript files☆57Updated 5 months ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆128Updated last month
- ☆157Updated this week
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆78Updated last year
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆79Updated last month
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆138Updated 3 weeks ago
- unleashed ffuf☆95Updated 4 months ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆70Updated 4 months ago
- ☆146Updated last year
- Bambdas collection for Burp Suite Professional and Community.☆203Updated last week
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year
- Unofficial documentation for the great tool Param Miner☆173Updated 2 years ago
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆132Updated last month
- ☆32Updated 10 months ago
- ☆55Updated last year
- HTTP/2 Single Packet Attack low Level Library / Tool based on Scapy + Exploit Timing Attacks☆138Updated this week
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago