onsecru / jwt-hacking-challenges
APIs to practise diverse techniques to hack JWT Signatures
☆65Updated 2 years ago
Alternatives and similar repositories for jwt-hacking-challenges:
Users that are interested in jwt-hacking-challenges are comparing it to the libraries listed below
- Fetch the details of assets hosted on AWS.☆87Updated last year
- GraphQL security workshop labs☆104Updated 9 months ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 4 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- Let's check if your target is vulnerable for client side prototype pollution.☆64Updated last year
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆91Updated last month
- A reverse whois tool based on Whoxy API.☆165Updated last year
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆80Updated 2 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆158Updated last year
- Cross Origin Resource Sharing MisConfiguration Scanner☆173Updated 3 years ago
- A Python based scanner to find potential SSRF parameters in a web application.☆72Updated 3 years ago
- A simple way of sending messages from the CLI output to your Slack with webhook.☆117Updated last year
- Workshop given at Hack in Paris 2019☆121Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Detects request smuggling via HTTP/2 downgrades.☆92Updated 2 years ago
- Bucky (An automatic S3 bucket discovery tool)☆194Updated 3 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆67Updated 3 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆58Updated 5 years ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆121Updated 3 years ago
- Webapp to search tips on Twitter through #bugbountytips☆71Updated 2 years ago
- A Burp Suite extension for CSRF proof of concepts.☆50Updated last year
- Misc bounty and vulndisc things☆84Updated 4 years ago
- Detectify Crowdsource Challenge☆68Updated 2 years ago
- Source for Pentester Land☆34Updated 2 years ago
- All Things Bug Bounty☆114Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Updated 3 years ago