stypr / vulnerable-nodejs-express-mysqlLinks
Example of a vulnerable NodeJS+Express+MySQL service
☆20Updated 2 years ago
Alternatives and similar repositories for vulnerable-nodejs-express-mysql
Users that are interested in vulnerable-nodejs-express-mysql are comparing it to the libraries listed below
Sorting:
- Client-Side Prototype Pollution Tools☆85Updated 4 years ago
- WordPress Plugin Update Confusion☆66Updated 4 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆58Updated 7 months ago
- ☆56Updated 11 months ago
- Prototype Pollution exploits collection☆35Updated 4 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆32Updated 3 years ago
- ☆130Updated 5 years ago
- ☆56Updated 4 years ago
- HTTP request smuggling tools☆18Updated 5 years ago
- List of Trusted Types bypasses☆102Updated last year
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 5 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 4 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 3 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆58Updated 4 years ago
- a Go code to detect leaks in JS files via regex patterns☆148Updated 4 years ago
- The list of files through which we can pop-up the java script alert box☆39Updated 7 years ago
- ☆97Updated 4 years ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆298Updated 2 years ago
- Labs from our workshop "Demystifying the server-side".☆17Updated 3 years ago
- Subdomain Takeover tool with web UI☆57Updated 2 years ago
- Same Origin XSS challenge☆64Updated 3 years ago
- This repo contains solution for ctf challenges☆38Updated last year
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆35Updated 3 years ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆50Updated last year
- Burp-suite Extension For finding .map files☆54Updated 2 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 4 years ago
- grapX will iterate through the URLs and grep the endpoints with all possible extensions.☆56Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago