nullenc0de / CognitohunterLinks
A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter specializes in dissecting AWS Cognito implementations and performing advanced credential-to-session conversions.
☆21Updated 11 months ago
Alternatives and similar repositories for Cognitohunter
Users that are interested in Cognitohunter are comparing it to the libraries listed below
Sorting:
- ☆41Updated last month
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆73Updated 3 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆35Updated 9 months ago
- A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive …☆47Updated last month
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
- BurpSuite extension to convert requests into bcheck scripts☆33Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated last year
- Bcheck scripts for Burp☆28Updated last year
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆35Updated 2 months ago
- ☆64Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆51Updated last month
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated last year
- Stay within program scope☆37Updated 3 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last month
- ☆32Updated last year
- ☆27Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆54Updated 9 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- ☆28Updated 2 years ago
- A tool for quickly evaluating IAM permissions in AWS.☆60Updated 2 years ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆45Updated last year
- API for Asset Service☆14Updated last year
- ☆58Updated last year
- A python Flask app that generates dynamic DTDs for easy out-of-band data exfiltration.☆30Updated 3 years ago
- tool that generates bypasses for open redirects☆52Updated 3 years ago
- Generate a dynamic PAC script that will route traffic to your Burp proxy only if it matches the scope defined in your Burp target.☆34Updated 4 years ago
- ☆95Updated 4 years ago
- ☆90Updated 2 weeks ago
- ☆21Updated 3 months ago