physics-sec / DetectCrossOriginMessaging
This Burp extension helps you to find usages of postMessage and recvMessage
☆15Updated 5 years ago
Alternatives and similar repositories for DetectCrossOriginMessaging
Users that are interested in DetectCrossOriginMessaging are comparing it to the libraries listed below
Sorting:
- Service-Now Article Bruteforcer☆16Updated 4 years ago
- ☆17Updated last year
- ☆32Updated 5 years ago
- unicode abnormalizer to takes a unicode string and abnormalizes it by character replacment☆27Updated 4 years ago
- commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. …☆41Updated 3 years ago
- Labs from our workshop "Demystifying the server-side".☆17Updated 2 years ago
- ☆37Updated 4 years ago
- Extract relative urls from a heap snapshot☆87Updated 3 years ago
- Bug Bounty statistics tool.☆32Updated 2 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- The Outlook HTML Leak Test Project☆41Updated 7 years ago
- Broken Link Hijacking Burp Extension☆57Updated 5 years ago
- Find orphaned IP's on cloud services☆29Updated 5 years ago
- Subvenkon is a subdomain enumerator from Venkon☆23Updated 4 years ago
- dummy shopping site for whitebox pentestig☆9Updated 2 years ago
- ☆22Updated 3 years ago
- ☆38Updated 5 years ago
- Collection of scripts to test your website against vulnerabilities.☆18Updated last year
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- Python script to give you subsets of the nmap "top-ports". For example, I want the 10th to 100th most common TCP ports. Spits out a comma…☆17Updated 5 years ago
- ☆24Updated 4 years ago
- A bash script that fetches and maintains thousands of DNS resolvers☆65Updated 4 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- A Burpsuite extension written in Python to perform basic validation fuzzing☆11Updated 2 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 3 months ago
- Get all possible href | src | url from target url or domain☆41Updated 4 years ago
- A simple tool to decloak/expose the bucket name behind a domain.☆22Updated 5 years ago
- gathers the XSS cheatsheet payloads and creates a usable wordlist☆71Updated 4 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆26Updated 6 years ago
- web-based-fuzzer☆32Updated 4 years ago