skepticfx / hookish
Hooks in to interesting functions and helps reverse the web app faster.
☆162Updated last week
Related projects: ⓘ
- Write JavaScript alert(1) with Katakana characters only☆141Updated 7 years ago
- A dashboard for interesting DOM tricks/techniques.☆36Updated 3 years ago
- XSS exploitation tool - access victims through HTTP proxy☆158Updated 10 years ago
- PoC JavaScriopt AST deobfuscator based on partial evaluation.☆44Updated 9 years ago
- Another web fuzzer written in NodeJS☆59Updated 6 years ago
- Tool to help with the exploitation of web application race conditions☆178Updated 6 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆86Updated 7 years ago
- A very simple bridge for performing Flash HTTP requests with JavaScript☆76Updated 9 years ago
- Easily intercept and modify WebSocket requests and message events.☆243Updated 3 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 5 years ago
- Burp Suite JS Beautifier☆95Updated 10 years ago
- X41 Browser Security White Paper - Tools and PoCs☆184Updated 6 years ago
- Static DOM XSS Scanner is a Static Analysis tool written in python that will iterate through all the JavaScript and HTML files under the …☆117Updated 9 years ago
- Project "Flashbang" - An open-source Flash-security helper☆206Updated 9 years ago
- Tainted PhantomJS☆53Updated 9 years ago
- The Guppy Proxy (GUI Pappy)☆142Updated 5 years ago
- A security tool to fingerprint PNG libraries used by web applications☆80Updated 5 years ago
- ☆29Updated 5 years ago
- ☆78Updated 11 years ago
- Chrome < 62 uxss exploit (CVE-2017-5124)☆161Updated 6 years ago
- IlluminateJS is a static JavaScript deobfuscator☆152Updated last year
- A fuzzing library in JavaScript. ✨☆116Updated 7 months ago
- Wadi Fuzzing Harness☆126Updated 7 years ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromgif()☆120Updated 9 years ago
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆156Updated 5 years ago
- Jaqen - Simple DNS rebinding☆70Updated 6 years ago
- Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.☆445Updated last year
- ☆178Updated 10 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆31Updated 5 years ago
- A tool for manipulating SWF files, leveraging zlib to craft alphanumeric-only valid SWF files in order to allow CSRF with SOP bypass than…☆110Updated 5 months ago