rafaybaloch / SOP-Bypass-Mini-Test-Suite
This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing Same Origin Policy bypass issues with browsers. Due credits were given to the researchers whose Proof of concepts have been incorporated in this test suite. Please note that, this is just the beta version, the n…
☆30Updated 5 years ago
Alternatives and similar repositories for SOP-Bypass-Mini-Test-Suite:
Users that are interested in SOP-Bypass-Mini-Test-Suite are comparing it to the libraries listed below
- Highlight Burp proxy requests made by different browsers☆30Updated 7 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 5 years ago
- ☆70Updated 7 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆52Updated 4 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 8 years ago
- Files from Zeronights presentation.☆28Updated 12 years ago
- The Zulu fuzzer☆125Updated 7 years ago
- CSV injection Vulnerable Script.☆29Updated 7 years ago
- Allows you to trace where inputs are reflected back to the user.☆37Updated 7 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 8 years ago
- Scripts and auxiliary files for fuzzing PHP's unserialize function☆44Updated 7 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 7 years ago
- Burplay is a Burp Extension allowing for replaying any number of requests using same modifications definition. Its main purpose is to aid…☆82Updated 7 years ago
- OAuth plugin for Burp Suite Extender☆42Updated 6 years ago
- ActionScript Proof of Concept to perform cross-domain reads☆44Updated 11 years ago
- ☆32Updated 9 years ago
- Tainted PhantomJS☆52Updated 9 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆25Updated 8 years ago
- XXE vulnerability demo☆22Updated 10 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 9 years ago
- ParrotNG is a tool capable of identifying Adobe Flex applications (SWF) vulnerable to CVE-2011-2461☆48Updated 10 years ago
- A repository of public reports, publications, and presentations associated with research performed by Security Engineers at Security In…☆53Updated 5 years ago
- ☆79Updated 12 years ago
- Hackerone disclosed report URL Aggregator☆30Updated 6 years ago
- ☆34Updated 5 years ago
- A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities☆15Updated 8 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 6 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago