hextreeio / android-webview-researchLinks
This app runs various webview tests to explore the attack surface and exploit techniques
☆17Updated 8 months ago
Alternatives and similar repositories for android-webview-research
Users that are interested in android-webview-research are comparing it to the libraries listed below
Sorting:
- PP-finder Help you find gadget for prototype pollution exploitation☆178Updated last year
- A collection of Semgrep rules derived from the OWASP MASTG specifically for Android applications.☆296Updated last year
- A collection of Server-Side Prototype Pollution gadgets and exploits☆205Updated 7 months ago
- Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used …☆218Updated 2 months ago
- ☆88Updated last year
- An Intentionally designed Vulnerable Android Application built in Kotlin.☆171Updated last year
- ☆76Updated 2 months ago
- A burp for intents wannabe☆71Updated last year
- Scripts and examples for "From Day Zero to Zero Day" by Eugene Lim.☆141Updated 2 weeks ago
- An Intentionally designed Vulnerable Android Application built in Kotlin.☆248Updated 3 years ago
- Awesome MXSS ??☆53Updated 11 months ago
- Oversecured Vulnerable iOS App☆227Updated last year
- Beetlebug is an open source insecure Android application with CTF challenges built for Android Penetration Testers and Bug Bounty hunters…☆114Updated 2 years ago
- CTF write-ups☆97Updated 9 months ago
- ☆19Updated 10 months ago
- A list of bizarre crackmes☆123Updated 3 months ago
- ☆115Updated last year
- ☆199Updated 10 months ago
- Challenges I wrote for various CTF competitions☆44Updated last year
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆148Updated 9 months ago
- ☆31Updated 2 weeks ago
- HTTP/2 Last Frame Synchronization (also known as Single Packet Attack) low Level Library / Tool based on Scapy + Exploit Timing Attacks☆192Updated 3 months ago
- Checks if an Android application has successfully completed the "App Link Verification" process for Android App Links.☆61Updated last year
- CSS injection requires an attacker to load a standalone CSS file to leak HTML tag attributes.☆19Updated last year
- Slides and videos from my public speeches / conferences☆76Updated 3 months ago
- This repository contains a number of insecure self-hosted applications that allows interested security engineers to test vulnerabilities …☆25Updated 4 months ago
- Need any help bypassing CSP ?☆31Updated 4 years ago
- HTTP redirection service designed to help bypass SSRF filters. Integrated with Burp Suite.☆48Updated 2 months ago
- A tool for exploring Firebase datastores.☆225Updated last month
- Some tips for Bug Bounty using LibreOffice☆48Updated 6 months ago