pauljt / scanjs
Static analysis tool for javascript code based. Scanjs uses Esprima to convert sources to AST, then walks AST looking for patterns.
☆54Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for scanjs
- A dashboard for interesting DOM tricks/techniques.☆36Updated 3 years ago
- rules for scanjs functionality☆28Updated 3 years ago
- [DEPRECATED] Static analysis tool for javascript code.☆429Updated 3 years ago
- umbrella config to achieve scanjs-like functionality through eslint☆88Updated 3 years ago
- Reflective/DOM XSS scanner built on casperJS☆81Updated 10 years ago
- Popcorn - the JSON fuzzer☆22Updated 10 years ago
- Tainted PhantomJS☆53Updated 9 years ago
- jPurify☆65Updated 7 years ago
- frida utility-belt☆24Updated 8 years ago
- This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks☆19Updated 9 years ago
- An example of obtaining RCE via Redis and CSRF☆77Updated 8 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 6 years ago
- Grunt plugin for retire.☆88Updated last year
- Exposing and documenting v8 runtime functions.☆28Updated 10 years ago
- ☆74Updated 11 years ago
- Deliberately vulnerable web application☆22Updated 7 years ago
- A simple TLS forwarder that lets you intercept traffic and play with them.☆30Updated 5 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 7 years ago
- Extracting server private key using Heartbleed OpenSSL vulnerability.☆393Updated 9 years ago
- A tool for detecting regular expression denial-of-service vulnerabilities in Android apps.☆33Updated 8 years ago
- SSRF Protection Library for PHP - http://safecurl.fin1te.net☆73Updated last year
- An ultra-compact intro (or refresher) to Web Application Security.☆31Updated 6 years ago
- Webkit uxss exploit (CVE-2017-7089)☆64Updated 7 years ago
- ☆45Updated 8 years ago
- Static DOM XSS Scanner is a Static Analysis tool written in python that will iterate through all the JavaScript and HTML files under the …☆118Updated 9 years ago
- Runtime checker for JS coding practices☆35Updated 2 years ago
- A visual fuzzer written in NodeJS to find Zalgo characters☆52Updated 6 years ago
- Hackerone disclosed report URL Aggregator☆29Updated 6 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago