kljunowsky / XXElixir
This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.
☆73Updated last year
Alternatives and similar repositories for XXElixir:
Users that are interested in XXElixir are comparing it to the libraries listed below
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆55Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆52Updated last year
- Web cache poisoning vulnerability scanner.☆63Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆52Updated 2 months ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆42Updated 10 months ago
- BChecks collection for Burp Suite Professional☆85Updated 7 months ago
- An MS Sharepoint and Frontpage Auditing Tool☆45Updated 2 months ago
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆113Updated last month
- unleashed ffuf☆107Updated 6 months ago
- Authorization-Nuclei-Templates☆38Updated 4 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆61Updated 5 months ago
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆75Updated 7 months ago
- Burp suite extension to find sensitive information by checking incoming text OR binary websocket messages☆23Updated this week
- ☆25Updated 4 years ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆120Updated 6 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- ☆129Updated 2 months ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated last year
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆89Updated 5 months ago
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆33Updated 2 months ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆68Updated 10 months ago
- Bypass Reset Password Code Lead to Account Takeover☆22Updated 4 months ago
- ☆58Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- A path-normalization pentesting tool.☆120Updated last year
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆24Updated 2 years ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆37Updated last year