hextreeio / android-webview-researchLinks
This app runs various webview tests to explore the attack surface and exploit techniques
☆14Updated 4 months ago
Alternatives and similar repositories for android-webview-research
Users that are interested in android-webview-research are comparing it to the libraries listed below
Sorting:
- Awesome MXSS ??☆50Updated 8 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆189Updated 4 months ago
- This repository contains a number of insecure self-hosted applications that allows interested security engineers to test vulnerabilities …☆23Updated last month
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆89Updated 5 months ago
- Challenges I wrote for various CTF competitions☆43Updated 10 months ago
- PP-finder Help you find gadget for prototype pollution exploitation☆163Updated 9 months ago
- Same Origin XSS challenge☆61Updated 3 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆49Updated last year
- ☆37Updated 3 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆138Updated 5 months ago
- Oversecured Vulnerable iOS App☆221Updated last year
- ☆84Updated 11 months ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆140Updated 11 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated 11 months ago
- CTF write-ups☆85Updated 6 months ago
- Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used …☆192Updated last month
- Useful configurations for the DomLogger++ extension☆34Updated 8 months ago
- This repository explain how to write frida hook scripts and analysis written hooks.☆84Updated last year
- ☆166Updated 3 years ago
- ☆63Updated 2 years ago
- A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆10Updated 10 months ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆51Updated last month
- Slides and videos from my public speeches / conferences☆74Updated last week
- Need any help bypassing CSP ?☆29Updated 4 years ago
- Security Advisories☆32Updated last month
- Here i will post my writeups :)☆32Updated 2 years ago
- ☆56Updated last month
- An Intentionally designed Vulnerable Android Application built in Kotlin.☆244Updated 3 years ago
- A burp for intents wannabe☆69Updated 10 months ago