nullenc0de / CognitohunterLinks
A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter specializes in dissecting AWS Cognito implementations and performing advanced credential-to-session conversions.
☆21Updated 9 months ago
Alternatives and similar repositories for Cognitohunter
Users that are interested in Cognitohunter are comparing it to the libraries listed below
Sorting:
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- ☆41Updated this week
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
- BurpSuite extension to convert requests into bcheck scripts☆33Updated 2 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆73Updated 3 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 8 months ago
- A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive …☆43Updated this week
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆36Updated last month
- Bcheck scripts for Burp☆29Updated last year
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated last year
- ☆64Updated 2 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆51Updated last week
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- ☆85Updated 4 months ago
- ☆27Updated 2 years ago
- My talks...☆25Updated 8 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 weeks ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆54Updated 8 months ago
- tool that generates bypasses for open redirects☆52Updated 3 years ago
- API for Asset Service☆13Updated last year
- A set of open-source community scripts☆65Updated last year
- A python3 script searching for secret on swaggerhub☆66Updated 3 years ago
- Looks for parameters in urls☆34Updated last year
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Updated 11 months ago
- vīlicus is a bug bounty api dashboard☆40Updated 2 years ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆81Updated last year
- Web cache poisoning vulnerability scanner.☆72Updated 3 years ago
- Adobe Experience Manager (AEM) hacking toolkit☆89Updated last month
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago