polyxss / bxss
Companion repository of the "Dancer in the Dark" paper.
☆12Updated 8 months ago
Alternatives and similar repositories for bxss:
Users that are interested in bxss are comparing it to the libraries listed below
- ☆22Updated 2 years ago
- Some payloads of JNDI Injection in JDK 1.8.0_191+☆9Updated 5 years ago
- Some PoC (Proof-of-Concept) about vulnerability of java deserialization of untrusted data☆26Updated 3 years ago
- Dnslog Interactsh的Py版接口查询☆13Updated 3 years ago
- ☆13Updated 3 weeks ago
- A Burp extension to show the Collaborator client in a tab☆23Updated 2 years ago
- SSRF 绕过 Payload☆15Updated 4 years ago
- Multithreaded exploit script for CVE-2022-36804 affecting BitBucket versions <8.3.1☆18Updated 2 years ago
- A project demonstrating an app that is vulnerable to Spring Security authorization bypass CVE-2022-31692☆36Updated 2 years ago
- ☆13Updated last year
- A tool which allows HackerOne researchers to download their reports into a local, indexed, and searchable repository☆17Updated 2 years ago
- CVE-2022-24112:Apache APISIX apisix/batch-requests RCE☆44Updated 3 years ago
- Fuzz WebSockets with custom Python code☆15Updated 7 months ago
- POC for leaking java version through file and ftp protocols☆24Updated 4 years ago
- ☆10Updated 2 years ago
- A Burp Suite extension to add a custom header (e.g. JWT)☆19Updated 3 years ago
- S2-061 CVE-2020-17530☆29Updated 4 years ago
- ☆34Updated 2 years ago
- Several XStream gadgets ported from ysoserial☆32Updated 3 years ago
- Native Java serialization filter blacklist for common gadgets☆20Updated 5 years ago
- ☆13Updated 5 years ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- Sample Spring application to Demonstrate the Gateway Actuator☆47Updated 3 years ago
- CVE-2022-29221 Proof of Concept Code - Smarty RCE☆16Updated 2 years ago
- ☆21Updated 3 years ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆15Updated last year
- ☆13Updated 3 years ago
- Headers Burp Extension☆18Updated last year
- Jboss_JMXInvokerServlet_Deserialization_RCE☆21Updated 5 years ago
- Dependencies with Log4j2 Checklist☆35Updated 3 years ago