π₯ Web application firewalls (WAF) bypass
β57Nov 1, 2023Updated 2 years ago
Alternatives and similar repositories for WAF-Bypass
Users that are interested in WAF-Bypass are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Bug Hunting Handbookβ12Aug 11, 2022Updated 4 years ago
- A command-line tool written in Python 3 to download files from VirusTotalβ16Sep 25, 2019Updated 6 years ago
- An ongoing & curated collection of awesome web vulnerability - Server-side request forgery software practices and remediation, librariesβ¦β26Feb 22, 2022Updated 4 years ago
- Describe how to use ffuf different options with examplesβ14Jun 13, 2022Updated 4 years ago
- Exploit Proof-of-Concept code for XAMPP v3.3.0 β '.ini' Buffer Overflow (Unicode + SEH)β13Nov 1, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer β’ AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A tool which allows HackerOne researchers to download their reports into a local, indexed, and searchable repositoryβ18Sep 29, 2022Updated 3 years ago
- Grep subdomains from web pages.β42Feb 10, 2025Updated last year
- Reversing Citrix Gateway for XSSβ17Jul 3, 2023Updated 3 years ago
- PoC for CVE-2024-42327 / ZBX-25623β18Dec 3, 2024Updated last year
- Host Header Vulnerability Scanner Automated Toolβ31Apr 18, 2025Updated last year
- JoomSploit is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticalβ¦β30Dec 19, 2023Updated 2 years ago
- Exploits with pwntools library in Python3. ROP, BOF, SHELLCODE.β20Feb 2, 2024Updated 2 years ago
- RATs library 2003 to presentβ17Oct 14, 2023Updated 2 years ago
- Chrome extension to extract domains from Google search results - by ofjaaahβ20Dec 24, 2025Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- β13Jul 5, 2023Updated 3 years ago
- β15Oct 7, 2016Updated 9 years ago
- Repository of various scripts related to Mobile PT. Copyrights and Licensing terms belong to respective owners.β11Nov 4, 2019Updated 6 years ago
- β25May 14, 2022Updated 4 years ago
- Spring Cloud Function SPEL RCE demoβ11Apr 2, 2022Updated 4 years ago
- β31Jun 5, 2023Updated 3 years ago
- Simple MITM Projectβ26Aug 16, 2026Updated 2 weeks ago
- Fetch data (open ports, CVEs, CPEs, ...) from shodan internetDB APIβ92Jan 9, 2023Updated 3 years ago
- A tampered payload generator to Fuzz Web Application Firewallsβ34Nov 4, 2019Updated 6 years ago
- Proton VPN Special Offer - Get 70% off β’ AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- β13Jun 10, 2024Updated 2 years ago
- This tool is just after the first refactoring pushed. Original is from Will Vandevanter (BuffaloWill). Only rearrange the code which willβ¦β34Jun 10, 2016Updated 10 years ago
- β14Dec 12, 2022Updated 3 years ago
- Use these VDP in Bug Hunting, These VDP are checked and verified by Bug Huntersβ21Aug 9, 2022Updated 4 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & wβ¦β19Jun 28, 2018Updated 8 years ago
- β22Aug 18, 2018Updated 8 years ago
- β14Jul 14, 2020Updated 6 years ago
- CVE-2022-3910β12Mar 14, 2023Updated 3 years ago
- π explores techniques to exploit and manipulate buffer overflow vulnerabilities in a program.β23Jun 18, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer β’ AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTIβ27Jan 6, 2021Updated 5 years ago
- This tool is developed for burp suite practitioner certificate exam and HTTP Request Smuggling labs. The most important about this tool iβ¦β22Sep 15, 2022Updated 3 years ago
- Compilation of JavaScript XSS oneliners payloads that rocks your nuts!β24Jul 14, 2017Updated 9 years ago
- This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be usedβ¦β25Apr 19, 2022Updated 4 years ago
- A fancier postMessage tracker with Chrome Manifest version V3 support and a few additional features, inspired by Frans Rosens postmessageβ¦β131Sep 12, 2025Updated 11 months ago
- Automated installation of Zimbraβ18Dec 10, 2024Updated last year
- Stay on top of new domains! Bug bounty hunters can use this tool to receive Pushbullet notifications each time there is a new target subdβ¦β26Apr 14, 2018Updated 8 years ago