uber-archive / paranoid-request
An SSRF-preventing wrapper around Node's request module
☆26Updated 6 years ago
Alternatives and similar repositories for paranoid-request:
Users that are interested in paranoid-request are comparing it to the libraries listed below
- rules for scanjs functionality☆28Updated 3 years ago
- An SSRF-preventing wrapper around Python's requests library. Advocate is no longer maintained, please fork and rename if you would like t…☆93Updated last year
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆44Updated 8 months ago
- The databases, API's and managers behind https://websecweekly.org☆50Updated 9 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆76Updated 4 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆87Updated 6 years ago
- A Burp Plugin for Detecting Weaknesses in Content Security Policies☆164Updated last year
- ☆32Updated 9 years ago
- A dashboard for interesting DOM tricks/techniques.☆36Updated 4 years ago
- Automatically exported from code.google.com/p/mustache-security☆23Updated 9 years ago
- SSRF Protection Library for PHP - http://safecurl.fin1te.net☆73Updated last year
- ☆30Updated 3 years ago
- Burp Extension for AWS Signing☆87Updated last month
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- Time Trial - A tool for performing feasibility analyses of timing attacks☆83Updated 10 years ago
- ☆39Updated last year
- An example of high-QPS requesting Burp Intruder style on AWS Lambda via self-invocation.☆22Updated 6 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 5 years ago
- ☆80Updated 12 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆157Updated 6 years ago
- Jaqen - Simple DNS rebinding☆73Updated 6 years ago
- Content-Security-Policy report aggregator/analyzer☆54Updated 4 years ago
- A HackerOne API client for Python☆19Updated 7 years ago