p4k03n4t0r / http-request-smugglingLinks
Blog about HTTP Request Smuggling, including a demo application.
☆29Updated 3 years ago
Alternatives and similar repositories for http-request-smuggling
Users that are interested in http-request-smuggling are comparing it to the libraries listed below
Sorting:
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- ☆27Updated 2 years ago
- Same Origin XSS challenge☆62Updated 3 years ago
- Prototype Pollution exploits collection☆34Updated 4 years ago
- Client-Side Prototype Pollution Tools☆85Updated 3 years ago
- ☆56Updated 4 years ago
- ☆22Updated 6 months ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 2 years ago
- This repo contains solution for ctf challenges☆36Updated 9 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last year
- ☆94Updated 3 years ago
- ☆169Updated 3 years ago
- Security Advisories☆34Updated 2 months ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆31Updated 2 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆102Updated 2 months ago
- ☆40Updated 2 months ago
- Dependency Confusion Security Testing Tool☆50Updated 3 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆28Updated 11 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 6 months ago
- This script just implement a proxy over h2cSmuggler so you can navigate in your browser making requests to the back-end server.☆37Updated 3 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆59Updated 4 years ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆69Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆62Updated 3 months ago
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆111Updated last year
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆88Updated 3 years ago
- Awesome MXSS ??☆53Updated 11 months ago
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- an Evil Java RMI Registry.☆52Updated 2 years ago
- ☆64Updated 3 years ago