x1337loser / Dependency-Confusion
All About Dependency Confusion Attack, (Detecting, Finding, Mitigating)
☆283Updated 11 months ago
Alternatives and similar repositories for Dependency-Confusion:
Users that are interested in Dependency-Confusion are comparing it to the libraries listed below
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆238Updated last month
- List of reporting templates I have used since I started doing BBH.☆248Updated 5 months ago
- My Priv8 Nuclei Templates☆306Updated 9 months ago
- ☆235Updated 3 years ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆485Updated last week
- Burp extension to create target specific and tailored wordlist from burp history.☆234Updated 3 years ago
- A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidde…☆342Updated 2 months ago
- ☆162Updated last week
- A tool to find good RCE☆170Updated 3 years ago
- ☆125Updated 3 years ago
- i will upload more templates here to share with the comunity.☆542Updated 10 months ago
- 10,000 H1 Disclosed Reports☆104Updated 9 months ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆230Updated 11 months ago
- ☆128Updated 3 years ago
- Useful "Match and Replace" burpsuite rules☆342Updated last year
- Finding XSS during recon☆256Updated 2 years ago
- A collection oneliner scripts for bug bounty☆174Updated 11 months ago
- Top disclosed reports from HackerOne☆148Updated 3 years ago
- Tips and Tutorials for Bug Bounty and also Penetration Tests.☆118Updated 2 years ago
- De-clutter a list of URLs☆321Updated 2 months ago
- Automatic Bug finder with buprsuite☆165Updated last year
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆382Updated last year
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆351Updated last year
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆622Updated last year
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆162Updated 4 months ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆349Updated 4 years ago
- Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]☆215Updated 5 months ago
- ☆152Updated last year
- xss-payload-list☆113Updated 6 months ago
- This is go CLI tool for send fast Multiple get HTTP request.☆268Updated 2 years ago