swoops / eval_villainLinks
A Firefox Web Extension to improve the discovery of DOM XSS.
☆280Updated last year
Alternatives and similar repositories for eval_villain
Users that are interested in eval_villain are comparing it to the libraries listed below
Sorting:
- Unofficial documentation for the great tool Param Miner☆186Updated 3 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆251Updated 3 years ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆298Updated 2 years ago
- ☆157Updated 2 years ago
- Prototype pollution scanner using headless chrome☆219Updated 3 years ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆199Updated last year
- xss development frameworks, with the goal of making payload writing easier.☆152Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆322Updated 4 months ago
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆234Updated 3 years ago
- Useful "Match and Replace" burpsuite rules☆353Updated 2 years ago
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆253Updated last year
- A tool to inspect and attack version 1 GUIDs☆238Updated 3 years ago
- De-clutter a list of URLs☆373Updated 2 months ago
- IIS shortname scanner written in Go☆347Updated 2 years ago
- This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests a…☆344Updated 4 years ago
- Customisable and automated HTTP header injection☆271Updated last year
- A fast and minimal JS endpoint extractor☆383Updated last year
- Secret and/or credential patterns used for gf.☆243Updated 2 years ago
- EvenBetter is a frontend Caido plugin that makes the Caido experience even better 😎☆160Updated last month
- ☆153Updated 2 years ago
- Burpsuite plugin for Interact.sh☆228Updated last year
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆553Updated 8 months ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆211Updated last year
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆234Updated 3 years ago
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆446Updated 2 years ago
- ☆149Updated 2 years ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆96Updated 8 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆151Updated 11 months ago
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆286Updated 2 years ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆282Updated last year