nullenc0de / Cognitohunter
A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter specializes in dissecting AWS Cognito implementations and performing advanced credential-to-session conversions.
☆20Updated 3 months ago
Alternatives and similar repositories for Cognitohunter:
Users that are interested in Cognitohunter are comparing it to the libraries listed below
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated 2 months ago
- ☆33Updated 3 weeks ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆71Updated 3 years ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- Bcheck scripts for Burp☆28Updated 9 months ago
- BurpSuite extension to convert requests into bcheck scripts☆31Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 8 months ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated 2 months ago
- ☆62Updated 2 years ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated 11 months ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆29Updated 2 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆28Updated 5 months ago
- vīlicus is a bug bounty api dashboard☆40Updated last year
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆53Updated 6 months ago
- ☆25Updated 2 years ago
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆34Updated 6 months ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- ☆18Updated last month
- tool that generates bypasses for open redirects☆52Updated 3 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- ☆27Updated 2 years ago
- Web cache poisoning vulnerability scanner.☆66Updated 3 years ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆28Updated 8 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated 10 months ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆27Updated 2 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆26Updated 7 months ago
- My talks...☆24Updated 2 months ago
- Scripts that automate portions of pentests.☆50Updated last week
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆40Updated last year
- ☆26Updated 2 years ago