nullenc0de / CognitohunterLinks
A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter specializes in dissecting AWS Cognito implementations and performing advanced credential-to-session conversions.
☆20Updated 5 months ago
Alternatives and similar repositories for Cognitohunter
Users that are interested in Cognitohunter are comparing it to the libraries listed below
Sorting:
- ☆37Updated 3 weeks ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆72Updated 3 years ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 4 months ago
- BurpSuite extension to convert requests into bcheck scripts☆32Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated last year
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated 8 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 10 months ago
- My talks...☆25Updated 4 months ago
- ☆63Updated 2 years ago
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆33Updated 3 months ago
- ☆26Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆52Updated 4 months ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆30Updated 7 months ago
- ☆27Updated 2 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆32Updated 2 years ago
- Bcheck scripts for Burp☆28Updated 11 months ago
- Demo of various ways to exploit post based reflected XSS☆18Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆51Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆77Updated last year
- ☆140Updated last year
- tool that generates bypasses for open redirects☆52Updated 3 years ago
- ☆81Updated 2 weeks ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆59Updated 2 years ago
- Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.☆29Updated 3 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- A tool for quickly evaluating IAM permissions in AWS.☆57Updated last year
- NotSoCereal: A Deserialization exploit playground☆53Updated 3 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year