skepticfx / domstormLinks
A dashboard for interesting DOM tricks/techniques.
☆35Updated 5 years ago
Alternatives and similar repositories for domstorm
Users that are interested in domstorm are comparing it to the libraries listed below
Sorting:
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- Static DOM XSS Scanner is a Static Analysis tool written in python that will iterate through all the JavaScript and HTML files under the …☆119Updated 10 years ago
- Reflective/DOM XSS scanner built on casperJS☆81Updated 11 years ago
- Tainted PhantomJS☆52Updated 10 years ago
- jPurify☆64Updated 8 years ago
- SSRF Protection Library for PHP - http://safecurl.fin1te.net☆73Updated 2 years ago
- Nodejs application intentionally vulnerable to SSRF☆42Updated 2 years ago
- Immunio's XSS Fuzzer tool☆25Updated 10 years ago
- Hackerone disclosed report URL Aggregator☆30Updated 7 years ago
- Duncan - Blind SQL injector skeleton☆59Updated 3 years ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromgif()☆121Updated 10 years ago
- A lightweight CSRF Toolkit for easy Proof of concept☆172Updated 11 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 8 years ago
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆157Updated 7 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆139Updated 5 years ago
- ☆81Updated 13 years ago
- ☆73Updated 12 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆88Updated 7 years ago
- Damn Small FI Scanner☆62Updated 6 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 6 years ago
- Automatically exported from code.google.com/p/mustache-security☆23Updated 10 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆159Updated 4 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆113Updated 5 years ago
- JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.☆34Updated 8 years ago
- ActionScript Proof of Concept to perform cross-domain reads☆43Updated 12 years ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆42Updated 8 years ago
- Chrome < 62 uxss exploit (CVE-2017-5124)☆160Updated 8 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 7 years ago
- A very simple bridge for performing Flash HTTP requests with JavaScript☆81Updated 10 years ago