lokori / flask-vuln
Pretty vulnerable flask app..
☆23Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for flask-vuln
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆98Updated 5 years ago
- Ruby command-line interface to Burp Suite's REST API☆59Updated 4 years ago
- ☆41Updated 4 years ago
- Full TTY reverse shell over SSH☆57Updated 4 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆64Updated 11 months ago
- HTML5 WebSocket message fuzzer☆144Updated 5 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 8 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated 4 months ago
- A server vulnerable to XXE that can be used to test payloads using the xxer tool.☆25Updated 6 years ago
- An interactive OOB XXE data exfiltration tool☆90Updated 7 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 5 years ago
- ☆159Updated 6 years ago
- Study about HQL injection exploitation.☆49Updated 8 years ago
- Proof-of-concept CORS exploitation tool.☆34Updated 5 years ago
- A Python3 based single-file subdomain enumerator☆90Updated 5 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- Python Package for burprestapi☆16Updated 4 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆49Updated 6 years ago
- Burp extension to passively scan for applications revealing software version numbers☆30Updated 5 months ago
- A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities☆60Updated 7 years ago
- ☆107Updated 2 years ago
- Some scripts and exploits☆142Updated 6 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing in a comfortable way!☆103Updated 6 years ago
- A lab for playing with NoSQL Injection☆128Updated 4 years ago
- Extension providing view with filtering capabilities for both complete and incomplete requests from all burp tools.☆47Updated 3 years ago
- Elasticsearch 1.4.0 < 1.4.2 Remote Code Execution exploit and vulnerable container☆32Updated 6 years ago
- CVE-2018-7600 Drupal RCE☆115Updated 6 years ago
- A CRLF ( Carriage Return Line Feed ) Injection attack occurs when a user manages to submit a CRLF into an application. This is most commo…☆46Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆135Updated 3 years ago