hoodoer / postBasedXSS
Demo of various ways to exploit post based reflected XSS
☆18Updated last year
Alternatives and similar repositories for postBasedXSS:
Users that are interested in postBasedXSS are comparing it to the libraries listed below
- ☆30Updated last week
- Bcheck scripts for Burp☆27Updated 8 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆58Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last month
- My talks...☆24Updated last month
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 2 months ago
- Template Nuclei SSTI☆29Updated last year
- Manage attack surface data on Elasticsearch☆22Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆71Updated 3 years ago
- ☆25Updated 2 years ago
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆28Updated 7 months ago
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆26Updated 2 years ago
- tool that generates bypasses for open redirects☆52Updated 2 years ago
- Get list of subsidiaries for a selected company☆27Updated 3 months ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 8 months ago
- ☆27Updated 2 years ago
- Chameleon Wordlists☆16Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- Nuclei POC 模板☆10Updated 2 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated last year
- Ffuf output browser☆39Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- your bestfried for finding LinkedIn Employees on github☆16Updated 2 years ago
- Python script to launch burp scans automatically☆32Updated 3 years ago
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year