nccgroup / requests-racer
Small Python library that makes it easy to exploit race conditions in web apps with Requests.
☆152Updated last year
Related projects ⓘ
Alternatives and complementary repositories for requests-racer
- Predict Mongo ObjectIds☆125Updated 6 years ago
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆196Updated 5 years ago
- A natural evolution of Burp Suite's Repeater tool☆194Updated 9 months ago
- CLI tool to get the links of original writeups from ctftime.org☆32Updated 4 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆253Updated 2 years ago
- Code execution via Python package installation.☆167Updated 5 years ago
- Everything you need about Burp Extension Generation☆152Updated last year
- Evenly distributes scanner load across targets☆82Updated last year
- notes and code on past CTFs☆100Updated 3 years ago
- Piper Burp Suite Extender plugin☆115Updated 8 months ago
- This tool is for automate the initial things that we usually do in daily pentesting. So you can focus more on the main target.☆78Updated 5 years ago
- [A]ndroid [A]pplication [P]entest [G]uide☆122Updated 5 years ago
- A cheat sheet for attacking SQLite via SQLi☆95Updated 8 years ago
- Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆90Updated 6 years ago
- A lab to play with authentication and authorisation problems☆92Updated last year
- Automatic tool for DNS rebinding-based SSRF attacks☆293Updated 4 years ago
- Burp Suite Extension to monitor new scope☆195Updated 3 years ago
- Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.☆465Updated 4 years ago
- vulnerable single sign on☆146Updated 3 months ago
- Burp with Friends☆99Updated last year
- Code Review Audit Script Scanner☆140Updated last year
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 3 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆149Updated last year
- A Python3 based single-file subdomain enumerator☆90Updated 5 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆59Updated 5 years ago
- research☆150Updated 7 months ago
- DupeKeyInjector☆134Updated 2 years ago
- ☆89Updated 4 months ago
- Payloads for CRLF Injection☆215Updated 3 weeks ago