payloadbox / ssti-payloads
🎯 Server Side Template Injection Payloads
☆602Updated 4 months ago
Related projects ⓘ
Alternatives and complementary repositories for ssti-payloads
- 🎯 XML External Entity (XXE) Injection Payload List☆1,097Updated 4 months ago
- 🎯 RFI/LFI Payload List☆538Updated 4 months ago
- 🎯 Open Redirect Payload List☆533Updated 4 months ago
- Because just a dark theme wasn't enough!☆552Updated 2 years ago
- Tool to help exploit XXE vulnerabilities☆542Updated last year
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆671Updated last year
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,218Updated 2 months ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,253Updated 4 months ago
- Simple websites vulnerable to Server Side Template Injections(SSTI)☆374Updated last year
- Nuclei Templates Collection☆908Updated 6 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆611Updated 9 months ago
- Nuclei plugin for BurpSuite☆1,193Updated 2 months ago
- Quick SQLMap Tamper Suggester☆1,347Updated 2 years ago
- A wordlist of API names for web application assessments☆760Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆804Updated 2 years ago
- Accept URLs on stdin, replace all query string values with a user-supplied value☆767Updated last year
- A cheatsheet for exploiting server-side SVG processors.☆695Updated 4 years ago
- Local file inclusion exploitation tool☆790Updated last year
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆944Updated 2 years ago
- A fuzzer for detecting open redirect vulnerabilities☆712Updated 4 months ago
- declutters url lists for crawling/pentesting☆1,203Updated 2 weeks ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,680Updated 6 months ago
- JSshell - JavaScript reverse/remote shell☆603Updated last year
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆712Updated 3 years ago
- HTTP Request Smuggling Detection Tool☆472Updated 11 months ago
- ☆698Updated last year
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,133Updated 3 years ago
- Automation for javascript recon in bug bounty.☆900Updated last year
- Automatic SSTI detection tool with interactive interface☆821Updated last month