terjanq / same-origin-xss
Same Origin XSS challenge
☆56Updated 2 years ago
Alternatives and similar repositories for same-origin-xss:
Users that are interested in same-origin-xss are comparing it to the libraries listed below
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆77Updated 4 months ago
- Gopher Tomcat Deployer☆47Updated 6 years ago
- DOM Clobbering Wiki, Browser Testing, and Payload Generation☆48Updated 3 months ago
- Nuclei Templates to reproduce Cracking the lens's Research☆124Updated 3 years ago
- Awesome MXSS ??☆48Updated 5 months ago
- This repo contains solution for ctf challenges☆33Updated 3 months ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 4 years ago
- Authenticated SSRF in Grafana☆79Updated 8 months ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆45Updated last year
- Utility for creating ZipSlip archives☆70Updated 2 years ago
- ☆159Updated 3 years ago
- ☆56Updated 3 years ago
- Playground☆28Updated last week
- List of Trusted Types bypasses☆90Updated 10 months ago
- Compiled dataset of Java deserialization CVEs☆61Updated 4 years ago
- Here i will post my writeups :)☆31Updated 2 years ago
- ☆94Updated 3 years ago
- WordPress Plugin Update Confusion☆66Updated 3 years ago
- ☆87Updated 10 months ago
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 9 months ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆163Updated 4 years ago
- Chrome extension that finds DOM based XSS vulnerabilities☆72Updated 2 years ago
- ☆15Updated 3 years ago
- Exploitation code for CVE-2021-40539☆45Updated 3 years ago
- A collection of Server-Side Prototype Pollution gadgets and exploits☆174Updated last month
- Chrome extension to detect possible xsleaks☆12Updated 5 years ago
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 4 months ago