mandatoryprogrammer / tarnish
A Chrome extension static analysis tool to help aide in security reviews.
☆147Updated last year
Related projects ⓘ
Alternatives and complementary repositories for tarnish
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 5 years ago
- Scripts to help me test Android apps☆52Updated 3 years ago
- DupeKeyInjector☆134Updated 2 years ago
- Simple "postMessage logger" Chrome extension☆92Updated 4 years ago
- Application and Service Fingerprinting☆131Updated last year
- Improved decoder for Burp Suite☆135Updated 3 years ago
- Burp Bounty is a extension of Burp Suite that improve an active and passive scanner by yourself. This extension requires Burp Suite Pro.☆70Updated 2 years ago
- The DetectDynamicJS Burp Extension provides an additional passive scanner that tries to find differing content in JavaScript files and ai…☆65Updated 4 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- The Outlook HTML Leak Test Project☆41Updated 6 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆136Updated 4 years ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- A Burp Extension designed to identify argument injection vulnerabilities.☆118Updated 5 years ago
- HTTP.ninja☆147Updated last year
- Files for appsecwiki.com☆114Updated 4 years ago
- Asynchronous wordlist based DKIM scanner☆56Updated 3 years ago
- Burp Suite Extension to monitor new scope☆195Updated 3 years ago
- A repository for GraphQL Extension for Burp Suite☆58Updated 6 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆253Updated 3 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆84Updated 4 years ago
- ☆51Updated 5 months ago
- HTML5 WebSocket message fuzzer☆144Updated 5 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆64Updated 11 months ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- Pillage a git repo found in an accessible web root☆60Updated 13 years ago
- ☆144Updated 2 years ago
- This repository includes a set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard cer…☆280Updated 4 months ago
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆82Updated 5 years ago
- ☆159Updated 6 years ago
- Proof-of-concept CORS exploitation tool.☆34Updated 5 years ago