Exploiting XSS with Javascript/JPEG Polyglot (by @medusa_0xf)
☆21Apr 8, 2022Updated 4 years ago
Alternatives and similar repositories for jpeg_polyglot_xss
Users that are interested in jpeg_polyglot_xss are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Blind RCE fuzzer☆15Jul 25, 2023Updated 3 years ago
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆25May 30, 2021Updated 5 years ago
- ☆27Mar 5, 2023Updated 3 years ago
- Quick tool to create custom wordlists like how fuzzers work☆10Sep 29, 2023Updated 2 years ago
- Generate a file that is both js and jpeg☆10May 1, 2023Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- All kind of frida stuff when needed in pentesting or reverse engineering of an android app - The perfect starter kit☆18Jun 2, 2020Updated 6 years ago
- Clickjacking PoC Generator☆36Oct 1, 2020Updated 5 years ago
- Yet another obfuscated payload generator written in Rust!☆13Feb 9, 2023Updated 3 years ago
- Web Application Firewall (WAF) Detector☆35Mar 13, 2023Updated 3 years ago
- Collection of AWS helper scripts.☆13Jan 15, 2018Updated 8 years ago
- This repository shows my effort to create a pandoc based pentest report template.☆12Aug 25, 2019Updated 7 years ago
- PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22☆29May 5, 2023Updated 3 years ago
- Extract data from a .git directory.☆15Mar 28, 2023Updated 3 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Nov 22, 2024Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- This is the word list for fuzzing kubernetes.☆15Nov 11, 2023Updated 2 years ago
- SQLi Hunter is a tool designed to find potential SQL injection vulnerabilities by fetching URLs from the Wayback Machine and checking for…☆18Jun 4, 2025Updated last year
- Useful scripts for pen testing. Require modification to run☆13Oct 17, 2020Updated 5 years ago
- The all-in-one hacking toolbox for hardware penetration testing.☆19Jun 4, 2024Updated 2 years ago
- Burp Suite extension to easily export sub domains☆12Dec 2, 2019Updated 6 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆24Apr 21, 2021Updated 5 years ago
- Virtual host brute forcer☆22Jan 10, 2014Updated 12 years ago
- A fast tool to scan SAAS,PAAS App written in Go☆85Feb 13, 2023Updated 3 years ago
- bounty collection☆47Sep 1, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆15May 6, 2023Updated 3 years ago
- header-fuzz allows you to fuzz any HTTP header with a wordlist and evaluate success or failure based on the returning HTTP status code.☆17Apr 15, 2020Updated 6 years ago
- ☆11Jun 30, 2025Updated last year
- A penetration testing tool for firestore databases☆13Nov 5, 2020Updated 5 years ago
- A Fully undetectable electron application exploit☆16Oct 27, 2021Updated 4 years ago
- Dump all available paths and/or endpoints on WADL file.☆96Nov 24, 2025Updated 9 months ago
- ☆15Apr 9, 2023Updated 3 years ago
- Shellcode loader with evasion capabilities written in Nim☆16Jan 25, 2025Updated last year
- Golang Packet Client and Server with Handler Support☆12Feb 6, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request …☆289Aug 24, 2024Updated 2 years ago
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆25Jul 31, 2020Updated 6 years ago
- Related subdomains finder☆27May 18, 2022Updated 4 years ago
- ☆17Dec 14, 2022Updated 3 years ago
- Cross Injector — A Python Script for Cross-Site Scripting (XSS) Detection☆41Sep 3, 2025Updated last year
- A command line tool to brute-force websites using cookies crafted with flask-unsign.☆13Apr 6, 2023Updated 3 years ago
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆61Jan 22, 2023Updated 3 years ago