v-p-b / DangerousPHPFunctionsLinks
Growing list of potentially dangerous PHP functions
☆52Updated 6 years ago
Alternatives and similar repositories for DangerousPHPFunctions
Users that are interested in DangerousPHPFunctions are comparing it to the libraries listed below
Sorting:
- Exploit insecure crossdomain.xml files.☆26Updated 8 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 2 years ago
- Study about HQL injection exploitation.☆51Updated 9 years ago
- Files from Zeronights presentation.☆28Updated 12 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Highlight Burp proxy requests made by different browsers☆30Updated 7 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- ☆32Updated 9 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 8 years ago
- A BurpSuite extension for beautifying .NET message parameters and hiding some of the extra clutter that comes with .NET web apps (i.e. __…☆12Updated 9 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- Generic Command Exploitation Engine for exploiting web application command-injection bugs,.☆31Updated 12 years ago
- Scripts that I've written that others may find useful☆14Updated 2 years ago
- REST/JSON interface to Burp Suite☆33Updated 4 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 5 years ago
- CTF Write-ups☆26Updated 6 years ago
- Offline Security Focus Database☆31Updated 12 years ago
- A simple grep user interface for searching code which can be used for SAST.☆8Updated 5 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- Kerberom is a tool aimed to retrieve ARC4-HMAC'ed encrypted Tickets Granting Service (TGS) of accounts having a Service Principal Name (S…☆36Updated 7 years ago
- #INFILTRATE19 raptor's party pack.☆30Updated last year
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 9 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- PHP Source Code Analyzer written in Perl (taint checking)☆18Updated 5 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- XXE vulnerability demo☆22Updated 11 years ago