nullenc0de / CognitohunterLinks
A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter specializes in dissecting AWS Cognito implementations and performing advanced credential-to-session conversions.
☆21Updated last year
Alternatives and similar repositories for Cognitohunter
Users that are interested in Cognitohunter are comparing it to the libraries listed below
Sorting:
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆73Updated 3 years ago
- Make better use of the embedded browser that comes by default with Burp☆44Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆36Updated 10 months ago
- A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive …☆53Updated 2 months ago
- ☆42Updated 2 months ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆32Updated 3 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated last year
- BurpSuite extension to convert requests into bcheck scripts☆33Updated 2 years ago
- Bcheck scripts for Burp☆28Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆21Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated last year
- ☆64Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 months ago
- ☆27Updated 2 years ago
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆35Updated 4 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆51Updated 2 months ago
- Demo of various ways to exploit post based reflected XSS☆18Updated 2 years ago
- ☆145Updated last year
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated 2 years ago
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆54Updated 11 months ago
- My talks...☆25Updated 11 months ago
- ☆95Updated 4 years ago
- ☆21Updated 4 months ago
- ☆29Updated 3 years ago
- API for Asset Service☆15Updated last year
- Clear and obvious name of the exploitation technique can create a false sense of familiarity, even if its true potential was never resear…☆37Updated 3 weeks ago
- tool that generates bypasses for open redirects☆52Updated 3 years ago