mchklt / csrf-file-upload-pocLinks
This PoC showcases how an attacker can exploit a CSRF vulnerability to upload a file to a victim's account without their knowledge. The attack leverages the victim's session or performs unauthorized actions on their behalf.
☆10Updated last year
Alternatives and similar repositories for csrf-file-upload-poc
Users that are interested in csrf-file-upload-poc are comparing it to the libraries listed below
Sorting:
- ☆16Updated last week
- My custom created nuclei for SQLi, bugbounty, pentesting☆26Updated 2 months ago
- ☆34Updated 3 years ago
- ☆47Updated last month
- my nuclei templates☆41Updated last year
- ☆73Updated 10 months ago
- Authorization-Nuclei-Templates☆40Updated 10 months ago
- ☆17Updated last year
- This tool checks if the given Url/File has Swagger Ui, That can be tested later..☆37Updated 2 years ago
- ☆40Updated 3 years ago
- Nuclei Templates☆23Updated 9 months ago
- output burp body only and auto pretiffy☆16Updated 3 months ago
- Contains nuclei templates for security testing and POCs.☆17Updated 9 months ago
- My own Custom nuclei templates☆25Updated 3 years ago
- ☆7Updated 2 years ago
- ☆21Updated last year
- BetterBugBounty - Here tools are classic, bugs are hunted, and nostalgia is the ultimate weapon!☆29Updated last year
- Zip-Finder is an automated tool that scans the Wayback Machine for ZIP, TAR, SQL, and other backup files. It automatically checks for sna…☆1Updated last week
- collect robots.txt endpoint for allowed and disallowed endpoints from a list of subdomains☆15Updated 2 years ago
- DepFine Is a tool to find the unregistered dependency based on dependency confusion valunerablility and lead to RCE☆28Updated 3 years ago
- ☆22Updated last year
- This Burp extension extracts various data (path, parameter keys, parameter values, subdomains, etc.) from the sitemap. This data is used …☆37Updated 3 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆37Updated last week
- About Recon Tools,Methodology and writeups☆18Updated last year
- ☆27Updated last year
- Find The Admin Panel & SQL Injection Endpoints, Using Google Dorks !!!☆19Updated 8 months ago
- Simple Automation script for juniper cve-2023-36845☆17Updated last year
- Stay on the beat with SubHound - receive notifications for new subdomains on Telegram and Discord! 🐶🎵☆17Updated 2 years ago
- Some wordlists collected form github to all bug bounty hunters.☆34Updated 4 years ago
- ☆22Updated 2 years ago