π₯ Web application firewalls (WAF) bypass
β55Nov 1, 2023Updated 2 years ago
Alternatives and similar repositories for WAF-Bypass
Users that are interested in WAF-Bypass are comparing it to the libraries listed below
Sorting:
- Describe how to use ffuf different options with examplesβ13Jun 13, 2022Updated 3 years ago
- β15Oct 7, 2016Updated 9 years ago
- Exploit Proof-of-Concept code for XAMPP v3.3.0 β '.ini' Buffer Overflow (Unicode + SEH)β14Nov 1, 2023Updated 2 years ago
- Host Header Vulnerability Scanner Automated Toolβ28Apr 18, 2025Updated 10 months ago
- A command-line tool written in Python 3 to download files from VirusTotalβ16Sep 25, 2019Updated 6 years ago
- Reversing Citrix Gateway for XSSβ17Jul 3, 2023Updated 2 years ago
- Chameleon Wordlistsβ15Sep 13, 2022Updated 3 years ago
- An ongoing & curated collection of awesome web vulnerability - Server-side request forgery software practices and remediation, librariesβ¦β24Feb 22, 2022Updated 4 years ago
- Grep subdomains from web pages.β42Feb 10, 2025Updated last year
- PoC for CVE-2024-42327 / ZBX-25623β18Dec 3, 2024Updated last year
- Exploits with pwntools library in Python3. ROP, BOF, SHELLCODE.β20Feb 2, 2024Updated 2 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & wβ¦β19Jun 28, 2018Updated 7 years ago
- A tool which allows HackerOne researchers to download their reports into a local, indexed, and searchable repositoryβ19Sep 29, 2022Updated 3 years ago
- This tool is developed for burp suite practitioner certificate exam and HTTP Request Smuggling labs. The most important about this tool iβ¦β22Sep 15, 2022Updated 3 years ago
- π explores techniques to exploit and manipulate buffer overflow vulnerabilities in a program.β23Jun 18, 2023Updated 2 years ago
- π Web security related academic papers collection (just for myself).β25Sep 9, 2021Updated 4 years ago
- A Collection of Wordlists for Penetration Testingβ35Dec 13, 2025Updated 2 months ago
- β27May 14, 2022Updated 3 years ago
- Compilation of JavaScript XSS oneliners payloads that rocks your nuts!β24Jul 14, 2017Updated 8 years ago
- β28Jun 5, 2023Updated 2 years ago
- Bybit API client library for Go (ByBit API connector)β10Dec 19, 2025Updated 2 months ago
- Red teaming cheatsheet for Windows Active Directory environments, featuring a meticulously curated cheatsheet that transcends traditionalβ¦β12Feb 5, 2025Updated last year
- JoomSploit is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticalβ¦β29Dec 19, 2023Updated 2 years ago
- Repository of useful payloads and tips for pentesting/bug bounty.β30Nov 15, 2024Updated last year
- [Tool] Forge PHP FastCGI protocol to RCE with strict disable_functionsβ64Jun 7, 2019Updated 6 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applicationsβ32Nov 4, 2022Updated 3 years ago
- HITCON 2024 x DEVCORE Wargameβ31Aug 30, 2024Updated last year
- This tool is just after the first refactoring pushed. Original is from Will Vandevanter (BuffaloWill). Only rearrange the code which willβ¦β33Jun 10, 2016Updated 9 years ago
- Helper script for Linux kernel disassemble or debugging with IDA Pro on VMware + GDB stub (including some symbols helpers)β38Aug 11, 2023Updated 2 years ago
- OWASP Skanda - SSRF Exploitation Frameworkβ38Jul 6, 2013Updated 12 years ago
- Prototype Pollution exploits collectionβ37Aug 8, 2021Updated 4 years ago
- Subdomain Recon Tool