satishpatnayak / ScanAndroidXML
Identifies vulnerabilities in network_security_config.xml, AndroidManifest.xml and if Firebase URL are accessible publicly
☆46Updated last year
Related projects ⓘ
Alternatives and complementary repositories for ScanAndroidXML
- Application for showcasing Android Deep Link and WebView Vulnerabilities☆14Updated last year
- Slides and other material from various conference presentations.☆40Updated 3 years ago
- Intentionally vulnerable webview implementions in Android☆55Updated 2 years ago
- A Bash wrapper for radamsa that can be used to fuzz exported activities and deep links.☆50Updated 3 years ago
- This repository contains all the examples related to a series of tutorials that demonstrate how to use the new Montoya API of Burp Suite …☆35Updated 3 months ago
- ☆36Updated 9 months ago
- Dependency Confusion Security Testing Tool☆39Updated 2 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆24Updated last year
- apkizer is a mass downloader for android applications for all available versions.☆46Updated 3 years ago
- Flutter SSL pinning bypass using IP forwarding☆46Updated 2 years ago
- URL scanner for recon, vulnerabilities, secrets and more!☆12Updated 3 years ago
- ☆36Updated last year
- Enhanced 403 bypass header☆21Updated 2 years ago
- Tool to extract & validate google fcm server keys from apks☆27Updated 3 years ago
- Burp extension to generate multi-step CSRF POC.☆29Updated 5 years ago
- ☆64Updated 2 years ago
- Security Advisories☆32Updated 11 months ago
- Web cache poisoning vulnerability scanner.☆61Updated 2 years ago
- ☆92Updated 3 years ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆22Updated last month
- ☆55Updated 3 years ago
- A tampered payload generator to Fuzz Web Application Firewalls☆34Updated 5 years ago
- Server and avi file to exploit FFmpeg HLS parse☆21Updated 5 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆35Updated 2 years ago
- an Evil Java RMI Registry.☆45Updated last year
- Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.☆13Updated 3 years ago
- This repository explain how to write frida hook scripts and analysis written hooks.☆79Updated last year