p4k03n4t0r / http-request-smugglingLinks
Blog about HTTP Request Smuggling, including a demo application.
☆32Updated 3 years ago
Alternatives and similar repositories for http-request-smuggling
Users that are interested in http-request-smuggling are comparing it to the libraries listed below
Sorting:
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last week
- ☆41Updated last week
- ☆27Updated 2 years ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 3 years ago
- Security Advisories☆34Updated 2 weeks ago
- Make better use of the embedded browser that comes by default with Burp☆45Updated last year
- ☆23Updated 8 months ago
- CTF challenges WriteUp☆14Updated 3 years ago
- CVE-2022-21907 Vulnerability PoC☆30Updated 3 years ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆114Updated last year
- WordPress - Authenticated XXE (CVE-2021-29447)☆43Updated 4 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆58Updated 4 years ago
- ☆86Updated 4 months ago
- ☆169Updated 4 years ago
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated 2 years ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆72Updated 2 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆107Updated 4 months ago
- Awesome MXSS ??☆54Updated last year
- CVE-2023-33733 reportlab RCE☆118Updated 2 years ago
- Utility for creating ZipSlip archives☆79Updated 2 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆29Updated last year
- Prototype Pollution exploits collection☆34Updated 4 years ago
- This repo contains solution for ctf challenges☆37Updated 11 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 8 months ago
- an Evil Java RMI Registry.☆51Updated 2 years ago
- Android webviews and securiy☆23Updated 2 months ago
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆91Updated last year
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Updated 7 years ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆29Updated last year