lauritzh / auth-request-analyserLinks
This Chromium extensions aims at supporting the analysis of single sign-on implementations, by offering semi-automated analysis and attack capabilities for OAuth 2.0 and OpenID Connect 1.0 Authorization/Authentication Requests.
☆28Updated 2 years ago
Alternatives and similar repositories for auth-request-analyser
Users that are interested in auth-request-analyser are comparing it to the libraries listed below
Sorting:
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 4 months ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆51Updated last year
- ☆81Updated 3 weeks ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 6 months ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 10 months ago
- ☆37Updated last month
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆52Updated 4 months ago
- Demo of various ways to exploit post based reflected XSS☆18Updated 2 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated last year
- A set of open-source community scripts☆62Updated 9 months ago
- BurpSuite extension to convert requests into bcheck scripts☆33Updated 2 years ago
- A wrapper around grep, to help you grep for things! - Improved version of gf by @tomnomnom.☆64Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆72Updated 3 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- ☆63Updated 2 years ago
- Additional active scan checks for BURP☆27Updated 9 months ago
- Dependency Confusion Security Testing Tool☆48Updated 3 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 10 months ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆59Updated 2 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- ☆26Updated 2 years ago
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet☆58Updated 9 months ago
- ☆57Updated last year
- An extension to use Semgrep inside Burp Suite.☆89Updated 2 months ago
- My talks...☆25Updated 4 months ago
- A collection of TUBs (Totally Useless Bambdas) for Burp Suite, created by Tib3rius & friends.☆31Updated 10 months ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated last year
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated last month
- Security Advisories☆34Updated 2 weeks ago