lauritzh / auth-request-analyser
This Chromium extensions aims at supporting the analysis of single sign-on implementations, by offering semi-automated analysis and attack capabilities for OAuth 2.0 and OpenID Connect 1.0 Authorization/Authentication Requests.
☆27Updated last year
Alternatives and similar repositories for auth-request-analyser:
Users that are interested in auth-request-analyser are comparing it to the libraries listed below
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆31Updated last year
- Additional active scan checks for BURP☆26Updated 3 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 5 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆21Updated last month
- Make better use of the embedded browser that comes by default with Burp☆41Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆48Updated 7 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 4 months ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆51Updated 4 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆28Updated 2 weeks ago
- EvenBetterExtensions allows you to quicky install and keep updated Caido extensions.☆23Updated 4 months ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆51Updated last year
- Utility for creating ZipSlip archives☆69Updated last year
- ☆51Updated last month
- Tool to fuzz for interesting vhost.☆16Updated 3 weeks ago
- HTTP requests of FrontPage expolit☆24Updated 11 years ago
- ☆58Updated last year
- ☆25Updated 2 years ago
- ☆53Updated 8 months ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- ☆70Updated 3 months ago
- ☆19Updated 2 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆27Updated 6 years ago
- Ffuf output browser☆39Updated last year
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 3 years ago
- vīlicus is a bug bounty api dashboard☆40Updated last year
- Demo of various ways to exploit post based reflected XSS☆18Updated last year