lprat / smuggling_detect
Try to detect HTTP desync attack (https://portswigger.net/blog/http-desync-attacks-request-smuggling-reborn)
☆12Updated 5 years ago
Alternatives and similar repositories for smuggling_detect:
Users that are interested in smuggling_detect are comparing it to the libraries listed below
- CVE-2019-9580 - StackStorm: exploiting CORS misconfiguration (null origin) to gain RCE☆32Updated 6 years ago
- burp extender for fuzzing☆10Updated 6 years ago
- Scans tcl for command injection☆36Updated 5 years ago
- Confluence Widget Connector path traversal (CVE-2019-3396)☆22Updated 5 years ago
- Swiftly search FDNS datasets from Rapid7 Open Data☆22Updated 2 years ago
- CVE-2020-12828 PoC and Analysis.☆29Updated 4 years ago
- Essential tool for finding blind injection attacks.☆50Updated 6 years ago
- ☆25Updated 7 years ago
- ☆42Updated 5 years ago
- ☆34Updated 5 years ago
- RAS(RAndom Subdomain) Fuzzer☆42Updated 5 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- It becomes the extension of Burp suite. The cookie set by the BipIP server may include a private IP, which is an extension to detect tha…☆16Updated 11 months ago
- RCE Exploit PoC for Spring based RESTFul APIs using XStream as Unmarshaler☆20Updated 11 years ago
- Collection of different exploitation scenarios of JWT.☆21Updated 3 years ago
- ViewState Payload Generator☆26Updated 6 years ago
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 11 years ago
- Google Chrome Extension automates testing fundamental Web Problems via Chrome☆21Updated 4 years ago
- The Recon scanning tool scans websites for open files & directories specified in the custom config file. Default server configuration fil…☆15Updated 7 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- Burp extension for automated handling of CSRF tokens☆16Updated 7 years ago
- This is the Go Server that relays all HTTP requests and responses between clients.☆27Updated last year
- (Wordpress) Ninja Forms File Uploads Extension <= 3.0.22 – Unauthenticated Arbitrary File Upload☆17Updated 5 years ago
- All the information provided on this site is for educational purposes only.☆17Updated last year
- miscellaneous security research stuff☆37Updated 5 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 7 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆25Updated 5 years ago
- Interactive Post Exploitation Tool☆36Updated 5 years ago
- XSS payloads for edge cases☆34Updated 6 years ago
- Automate SSH communication with firewalls, switches, etc.☆26Updated 7 years ago