wallarm / jwt-secrets
☆815Updated this week
Alternatives and similar repositories for jwt-secrets:
Users that are interested in jwt-secrets are comparing it to the libraries listed below
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,315Updated last week
- Because just a dark theme wasn't enough!☆558Updated 2 months ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆856Updated 3 years ago
- A cheatsheet for exploiting server-side SVG processors.☆719Updated 4 years ago
- An IIS short filename enumeration tool☆881Updated 3 months ago
- declutters url lists for crawling/pentesting☆1,308Updated 2 weeks ago
- BChecks collection for Burp Suite Professional and Burp Suite Enterprise Edition☆669Updated 2 weeks ago
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,571Updated 2 weeks ago
- Burp Plugin to Bypass WAFs through the insertion of Junk Data☆1,026Updated last month
- fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.☆803Updated last year
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆1,915Updated last year
- 🎯 XML External Entity (XXE) Injection Payload List☆1,150Updated 7 months ago
- Nuclei plugin for BurpSuite☆1,225Updated 6 months ago
- Automated & Manual Wordlists provided by Assetnote☆1,389Updated 7 months ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆722Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆585Updated last year
- Nuclei Templates Collection☆957Updated 10 months ago
- Deriving RSA public keys from message-signature pairs☆301Updated 10 months ago
- A wordlist of API names for web application assessments☆799Updated 2 weeks ago
- Automatic SSTI detection tool with interactive interface☆1,000Updated 4 months ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆964Updated 8 months ago
- A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given target☆1,288Updated this week
- Fetches javascript file from a list of URLS or subdomains.☆758Updated last year
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,142Updated 4 years ago
- Accept URLs on stdin, replace all query string values with a user-supplied value☆797Updated 2 years ago
- latest version of scanners for IIS short filename (8.3) disclosure vulnerability☆1,492Updated last year
- ☆967Updated last month
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆59Updated 10 months ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)☆1,414Updated 2 years ago
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated last year