msrkp / MXSS
Awesome MXSS ??
☆45Updated last month
Related projects ⓘ
Alternatives and complementary repositories for MXSS
- A collection of Server-Side Prototype Pollution gadgets and exploits☆133Updated 2 months ago
- ☆65Updated last month
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆60Updated 4 months ago
- Challenges I wrote for various CTF competitions☆40Updated 4 months ago
- Searcher for cross-site leaks (XS-Leaks)☆81Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆107Updated 4 months ago
- Same Origin XSS challenge☆56Updated 2 years ago
- Some tips for Bug Bounty using LibreOffice☆33Updated 4 months ago
- ☆56Updated last year
- ☆88Updated 11 months ago
- PP-finder Help you find gadget for prototype pollution exploitation☆138Updated 3 months ago
- ☆30Updated 5 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆59Updated 2 weeks ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆117Updated 2 weeks ago
- Useful configurations for the DomLogger++ extension☆30Updated 2 months ago
- a repository of all the CTF challenges I've made for public events☆50Updated last year
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆74Updated 5 months ago
- This is the data that powers the PortSwigger URL validation bypass cheat sheet.☆30Updated 3 weeks ago
- unleashed ffuf☆96Updated 4 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆112Updated 7 months ago
- Security Advisories☆32Updated last year
- Here i will post my writeups :)☆31Updated last year
- A better way of querying certificate transparency logs☆75Updated last year
- CVE-2023-33733 reportlab RCE☆113Updated last year
- ☠️ Code for the Defcon Workshop☆22Updated 3 months ago
- ☆143Updated last month
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆43Updated last week
- 🛠️ Workflows created by the community☆61Updated 3 months ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆86Updated 9 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year