harisec / orange-confusion-attacks
Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!
☆20Updated 6 months ago
Alternatives and similar repositories for orange-confusion-attacks:
Users that are interested in orange-confusion-attacks are comparing it to the libraries listed below
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆33Updated 4 months ago
- Looks for parameters in urls☆33Updated 5 months ago
- Ffuf output browser☆39Updated 2 years ago
- Advanced test for proxy & waf☆13Updated 6 months ago
- Custom nuclei templates for bug hunting.....☆25Updated 9 months ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆27Updated 7 months ago
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- List of custom Nuclei templates☆15Updated last year
- vīlicus is a bug bounty api dashboard☆40Updated last year
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 7 months ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆27Updated 6 months ago
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- Tool to fuzz for interesting vhost.☆22Updated 2 months ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- ☆16Updated last year
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- ☆14Updated last year
- Process URLs and remove duplicate query parameters.☆28Updated last year
- Get list of subsidiaries for a selected company☆25Updated 2 months ago
- Template Nuclei SSTI☆29Updated last year
- Burp extension used to snip any header from all the requests.☆22Updated last year
- This repository presents a proof-of-concept of CVE-2024-23897☆15Updated 11 months ago
- Bcheck scripts for Burp☆25Updated 7 months ago
- tool that generates bypasses for open redirects☆52Updated 2 years ago
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated 11 months ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆28Updated 3 months ago