neex / http2smugl
☆533Updated last year
Alternatives and similar repositories for http2smugl:
Users that are interested in http2smugl are comparing it to the libraries listed below
- Client Side Prototype Pollution Scanner☆513Updated 2 years ago
- ☆672Updated 2 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆844Updated 3 years ago
- Content-Type Research☆596Updated last year
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆351Updated 6 months ago
- ☆686Updated 2 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated 11 months ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆371Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆580Updated last year
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆699Updated 2 years ago
- Fetches javascript file from a list of URLS or subdomains.☆755Updated last year
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆416Updated 3 months ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆286Updated last year
- DNS rebinding toolkit☆251Updated last year
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆299Updated 2 years ago
- A cheatsheet for exploiting server-side SVG processors.☆711Updated 4 years ago
- Unofficial documentation for the great tool Param Miner☆176Updated 2 years ago
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆602Updated last year
- This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests a…☆327Updated 3 years ago
- HTTP file upload scanner for Burp Proxy☆399Updated last year
- A simple SSRF-testing sheriff written in Go☆324Updated 3 months ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆276Updated 4 years ago
- Turbo Intruder Scripts☆222Updated 4 years ago
- Second-order subdomain takeover scanner☆385Updated last year
- Automatic tool for DNS rebinding-based SSRF attacks☆297Updated 4 years ago
- HTTP Request Smuggling Detection Tool☆485Updated last year
- DOM XSS scanner for Single Page Applications☆401Updated 7 months ago
- Default signature for Jaeles Scanner☆320Updated 2 years ago
- Gotator is a tool to generate DNS wordlists through permutations.☆465Updated 2 years ago