shalvah / cors-escapeLinks
☆73Updated 6 years ago
Alternatives and similar repositories for cors-escape
Users that are interested in cors-escape are comparing it to the libraries listed below
Sorting:
- ☆128Updated 4 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆178Updated 4 years ago
- Automatic finder for subdomains vulnerable to takeover. Written in Go, based on @haccer's subjack.☆148Updated 4 years ago
- Exploiting misconfigured firebase databases☆124Updated 6 years ago
- This information provides helpful information to make it easier to discover new attack surface on HackerOne.com.☆67Updated 6 years ago
- PostMessage extension☆96Updated 5 years ago
- Reconnaissance tool which scans javascript files for subdomains and then iterates over all javascript files hosted on subsequent subdomai…☆224Updated 4 years ago
- A XSS Payload in a gif file☆45Updated 8 years ago
- You can read the writeup on this script here☆274Updated 4 years ago
- List HackerOne private program assets☆152Updated 3 years ago
- A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for…☆191Updated 4 years ago
- A shell script to grab subdomains from https://crt.sh, and probe for working http and https servers with @tomnomnom's tool https://github…☆41Updated 3 years ago
- Unpack a JavaScript Source Map back into filesystem structure☆184Updated 4 years ago
- URL fuzzing tool made of Python☆63Updated 3 months ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆290Updated 2 years ago
- Basically a regexp over a GitHub search.☆68Updated 2 years ago
- Brute force WordPress sites vulnerabile to XML-RPC amplification.☆101Updated 2 years ago
- Host Header Injection Checker☆81Updated 3 years ago
- Bug Bounty Dork☆71Updated 3 years ago
- A tool to find subdomains or domains from passive sources.☆113Updated 4 years ago
- A script to extract domain names from Content Security Policy(CSP) headers☆112Updated 6 years ago
- aquatone results for sites with bug bountys☆313Updated 3 years ago
- Dump all available paths and/or endpoints on WADL file.☆93Updated this week
- Command line tool for testing CRLF injection on a list of domains.☆163Updated last year
- Default Linux files/images location☆28Updated 4 years ago
- Open Redirect Finder.☆50Updated 11 months ago
- A CPU-based JSON Web Token (JWT) cracker and - to some extent - scanner.☆313Updated last year
- Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.☆316Updated 3 years ago
- Continuous monitoring for JavaScript files☆220Updated 5 years ago
- reads a list of IP ranges in CIDR notation and prints the individual IP addresses.☆14Updated 8 years ago