hackvertor / clickbandit
A JavaScript clickjacking PoC generator
☆22Updated 5 years ago
Alternatives and similar repositories for clickbandit:
Users that are interested in clickbandit are comparing it to the libraries listed below
- Scans crossdomain.xml policies for expired domain names.☆25Updated 9 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆59Updated 5 years ago
- Web Application Security related tools. Includes backdoors, proof of concepts and tricks☆36Updated 10 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 8 years ago
- XSSB is a proactive DOM sanitizer, defending against client-side injection attacks!☆38Updated 6 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 2 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- ☆13Updated 7 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- Clickjacking PoC Generator☆35Updated 4 years ago
- Actarus is a custom tool for bug bounty☆76Updated 5 years ago
- Hunt Open MongoDB instances☆78Updated 5 years ago
- Scripts for Deploying new server☆48Updated 6 years ago
- A tool for fetching archived URLs (to be rewritten in Go).☆39Updated 6 years ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated last year
- Some random scripts. Just trying to be like the cool kids.☆90Updated 6 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆26Updated 6 years ago
- A wrap up script to auto perform nmap scan from the result of dnsrecon, then output result with filename as hostname and ip☆11Updated 6 years ago
- Send notifications if a new program is published on HackerOne using Pushbullet☆26Updated 7 years ago
- ☆35Updated 5 years ago
- Clickjacking Proof-of-Concept Exploit☆25Updated 4 years ago
- Amazon S3 bucket spelunking!☆84Updated 7 years ago
- Nodejs application intentionally vulnerable to SSRF☆41Updated last year
- Find plaintext credentials from emails in bulk from password dumps, and generate emails on the fly.☆49Updated 5 years ago
- A passive scanning tool for finding expired domain vulnerabilities while you browse.☆41Updated 5 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago