mazen160 / jwt-pwn
Security Testing Scripts for JWT
☆312Updated 2 years ago
Alternatives and similar repositories for jwt-pwn:
Users that are interested in jwt-pwn are comparing it to the libraries listed below
- DNS rebinding toolkit☆251Updated last year
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆205Updated last year
- SSRF testing tool☆244Updated 2 years ago
- Turbo Intruder Scripts☆222Updated 4 years ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆273Updated 4 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Updated 2 years ago
- The Serverless Blind XSS App☆340Updated last month
- Python tool to find potential SSRF parameters☆314Updated last month
- DOM XSS scanner for Single Page Applications☆403Updated 8 months ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆256Updated 2 years ago
- Payloads for CRLF Injection☆224Updated 5 months ago
- Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.☆266Updated last month
- List DTDs and generate XXE payloads using those local DTDs.☆620Updated last year
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆258Updated 3 years ago
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆312Updated last year
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆527Updated 6 years ago
- Bugbounty scope tool☆325Updated 3 weeks ago
- Default signature for Jaeles Scanner☆320Updated 2 years ago
- Nuclei templates written by us.☆267Updated 3 years ago
- You can read the writeup on this script here☆270Updated 4 years ago
- Automatic tool for DNS rebinding-based SSRF attacks☆298Updated 4 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated 2 years ago
- Common Web Managers Fuzz Wordlists☆174Updated 2 weeks ago
- Second-order subdomain takeover scanner☆387Updated 2 years ago
- An hourly updated list of subdomains gathered from certificate transparency logs☆344Updated 3 years ago
- HTTP file upload scanner for Burp Proxy☆402Updated last year
- Various Payload wordlists☆235Updated 4 years ago
- Python library and CLI for the Bug Bounty Recon API☆223Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆592Updated last year
- A tool which scrapes public github repositories for common naming conventions in variables, folders and files☆287Updated 9 months ago