p4k03n4t0r / http-request-smugglingLinks
Blog about HTTP Request Smuggling, including a demo application.
☆28Updated 3 years ago
Alternatives and similar repositories for http-request-smuggling
Users that are interested in http-request-smuggling are comparing it to the libraries listed below
Sorting:
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- Same Origin XSS challenge☆61Updated 3 years ago
- A cheatsheet for exploiting server-side SVG rasterization.☆29Updated 3 years ago
- Challenges I wrote for various CTF competitions☆44Updated 11 months ago
- ☆166Updated 3 years ago
- ☆26Updated 2 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆59Updated 4 years ago
- ☆56Updated 3 years ago
- Security Advisories☆34Updated last week
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆109Updated last year
- Prototype Pollution exploits collection☆35Updated 3 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- The following package is the standalone wordlist-only component to flask-unsign.☆39Updated last year
- LFI to RCE via phpinfo() assistance or via controlled log file☆69Updated 2 years ago
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- ☆19Updated 4 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated last year
- Utility for creating ZipSlip archives☆73Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated last month
- CVE-2022-21907 Vulnerability PoC☆28Updated 3 years ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆30Updated 5 years ago
- This repo contains solution for ctf challenges☆36Updated 7 months ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆88Updated 3 years ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆36Updated 2 years ago
- a repository of all the CTF challenges I've made for public events☆53Updated last week
- an Evil Java RMI Registry.☆50Updated 2 years ago
- Web CTF CheatSheet 🐈☆25Updated 3 years ago
- ☆94Updated 3 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆53Updated 2 months ago
- Pipe nmap verbose output to a usable format for httpx or host:port notation.☆17Updated 3 years ago