stypr / vulnerable-nodejs-express-mysqlLinks
Example of a vulnerable NodeJS+Express+MySQL service
☆20Updated 2 years ago
Alternatives and similar repositories for vulnerable-nodejs-express-mysql
Users that are interested in vulnerable-nodejs-express-mysql are comparing it to the libraries listed below
Sorting:
- Client-Side Prototype Pollution Tools☆85Updated 4 years ago
- Script to test open Akamai ARL vulnerability.☆71Updated 4 years ago
- WordPress Plugin Update Confusion☆66Updated 3 years ago
- ☆57Updated 8 months ago
- List of Trusted Types bypasses☆102Updated last year
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆28Updated 4 years ago
- ☆19Updated 4 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- Labs from our workshop "Demystifying the server-side".☆17Updated 3 years ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆50Updated last year
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆57Updated 4 months ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆31Updated 2 years ago
- A repository of some useful grep patterns for tomnomnoms gf tool☆38Updated 4 years ago
- Prototype Pollution exploits collection☆34Updated 4 years ago
- Subdomain Takeover tool with web UI☆57Updated 2 years ago
- ☆129Updated 4 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆43Updated 3 weeks ago
- a tool that compiles a csv of all h1 program stats☆47Updated 2 years ago
- A repository of wordlists for enumeration. Will be added to by my tools when they find interesting new entries☆23Updated 4 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 3 years ago
- Prototype Pollution in JavaScript☆74Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆131Updated 4 years ago
- Get the scope of your bugcrowd programs☆67Updated 4 years ago
- ☆60Updated last year
- Bash Script to Hunt all the targets/Subdomains from Chaos by Project Discovery Team☆35Updated 4 years ago
- The commands and scripts I used in the Live Recon Village talks☆38Updated 4 years ago
- Misc bounty and vulndisc things☆86Updated 4 years ago
- Server and avi file to exploit FFmpeg HLS parse☆21Updated 6 years ago