shhnjk / Safe-Blob-URLLinks
A Web Platform API proposal for Blob URL
☆10Updated 2 years ago
Alternatives and similar repositories for Safe-Blob-URL
Users that are interested in Safe-Blob-URL are comparing it to the libraries listed below
Sorting:
- A curated list of argument injection vectors☆41Updated 7 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆51Updated last year
- This repository is a one-stop shop for diving deep into the fascinating world of mXSS (mutations caused by browser quirks in HTML parsing…☆24Updated 7 months ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- ☆31Updated this week
- ☆88Updated last year
- ☆33Updated 2 years ago
- HTML Universal Identifier☆67Updated 9 months ago
- List of Trusted Types bypasses☆102Updated last year
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated 9 months ago
- XS-Leak Browser Test Suite☆85Updated last year
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆103Updated 3 months ago
- Awesome MXSS ??☆53Updated 11 months ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆57Updated 5 months ago
- A collection of client-side libraries with HTML injection vulnerabilities and DOM clobbering gadgets.☆34Updated 3 weeks ago
- ☆33Updated last year
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆55Updated last month
- POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library☆17Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated 2 years ago
- How effective are LLMs in identifying and exploiting security vulnerabilities?☆65Updated 6 months ago
- 🐛 UCLA ACM Cyber's Fuzzing Lab☆85Updated 8 months ago
- xortigate-cve-2023-27997☆64Updated last year
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆14Updated 2 years ago
- A python module to explore the object tree to extract paths to interesting objects in memory.☆102Updated 7 months ago
- Attack/Defense services for the 2nd International Cybersecurity Challenge @ San Diego, California USA☆40Updated 2 years ago
- ☆31Updated 3 weeks ago
- CVE-2023-4911 proof of concept☆168Updated last year
- Advanced exploits that I wrote for Pwn2Own competitions and other occasions☆169Updated last year
- jws2pubkey tool☆40Updated 3 months ago