nccgroup / requests-racer
Small Python library that makes it easy to exploit race conditions in web apps with Requests.
β158Updated last year
Alternatives and similar repositories for requests-racer:
Users that are interested in requests-racer are comparing it to the libraries listed below
- A natural evolution of Burp Suite's Repeater toolβ195Updated last year
- π΄ββ οΈ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files π΄ββ οΈβ197Updated 6 years ago
- Predict Mongo ObjectIdsβ128Updated 6 years ago
- Automatic tool for DNS rebinding-based SSRF attacksβ298Updated 4 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.β258Updated 3 years ago
- A simple SSRF-testing sheriff written in Goβ324Updated 4 months ago
- notes and code on past CTFsβ103Updated 3 years ago
- find hardcoded strings from source codeβ274Updated 3 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.β153Updated 2 years ago
- Code execution via Python package installation.β169Updated 6 years ago
- β170Updated 3 years ago
- Python automation of Docker.sock abuseβ211Updated 2 years ago
- Leverage certificate transparency live feed to monitor for newly issued subdomain certificates (last 90 days, configurable), for domains β¦β220Updated 2 years ago
- Piper Burp Suite Extender pluginβ117Updated last year
- Use HTTP Smuggling Lab to learn HTTP Smuggling.β347Updated 2 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.β102Updated 6 years ago
- researchβ151Updated 11 months ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requestsβ350Updated 6 months ago
- Everything you need about Burp Extension Generationβ152Updated 2 years ago
- SSRF testing toolβ245Updated 2 years ago
- This tool is for automate the initial things that we usually do in daily pentesting. So you can focus more on the main target.β75Updated 5 years ago
- Evenly distributes scanner load across targetsβ85Updated 2 years ago
- A permutation generation tool written in golangβ211Updated 5 years ago
- Tool to help with the exploitation of web application race conditionsβ181Updated 6 years ago
- β94Updated 3 months ago
- Simple python script to extract unsafe functions from php projectsβ197Updated 6 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project contaβ¦β50Updated 7 years ago
- β147Updated 3 years ago
- Burp Suite Extension to monitor new scopeβ197Updated 3 years ago
- A cheat sheet for attacking SQLite via SQLiβ97Updated 8 years ago