stypr / vulnerable-nodejs-express-mysqlLinks
Example of a vulnerable NodeJS+Express+MySQL service
☆20Updated 3 years ago
Alternatives and similar repositories for vulnerable-nodejs-express-mysql
Users that are interested in vulnerable-nodejs-express-mysql are comparing it to the libraries listed below
Sorting:
- Client-Side Prototype Pollution Tools☆86Updated 4 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 4 years ago
- HTTP request smuggling tools☆18Updated 5 years ago
- List of Trusted Types bypasses☆102Updated last year
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- WordPress Plugin Update Confusion☆67Updated 4 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 5 years ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆50Updated last year
- Prototype Pollution exploits collection☆37Updated 4 years ago
- ☆56Updated last year
- Subdomain Takeover tool with web UI☆57Updated 2 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆60Updated last month
- Extract relative urls from a heap snapshot☆87Updated 4 years ago
- A repository of some useful grep patterns for tomnomnoms gf tool☆38Updated 5 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 6 years ago
- a tool that compiles a csv of all h1 program stats☆49Updated 2 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated 2 years ago
- ☆19Updated 4 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆60Updated 6 years ago
- Burp-suite Extension For finding .map files☆54Updated 2 years ago
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆95Updated 5 years ago
- This repo includes my analysis of some public reports.☆55Updated 5 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 3 years ago
- A extension for collecting parameters☆25Updated 5 years ago
- ☆38Updated 5 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 5 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆32Updated 3 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 2 months ago
- ☆75Updated last year
- Server and avi file to exploit FFmpeg HLS parse☆22Updated 6 years ago