x1337loser / Dependency-Confusion
All About Dependency Confusion Attack, (Detecting, Finding, Mitigating)
☆280Updated 10 months ago
Alternatives and similar repositories for Dependency-Confusion:
Users that are interested in Dependency-Confusion are comparing it to the libraries listed below
- A tool to find good RCE☆170Updated 2 years ago
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆236Updated this week
- My Priv8 Nuclei Templates☆296Updated 8 months ago
- i will upload more templates here to share with the comunity.☆538Updated 9 months ago
- ☆237Updated 3 years ago
- ☆125Updated 3 years ago
- List of reporting templates I have used since I started doing BBH.☆245Updated 4 months ago
- ☆161Updated 2 months ago
- Finding XSS during recon☆254Updated 2 years ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆187Updated 6 months ago
- A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidde…☆333Updated last month
- Useful "Match and Replace" burpsuite rules☆340Updated last year
- Burp extension to create target specific and tailored wordlist from burp history.☆233Updated 3 years ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆229Updated 10 months ago
- Top disclosed reports from HackerOne☆147Updated 3 years ago
- Automated Tool for Testing Header Based Blind SQL Injection☆266Updated last year
- 10,000 H1 Disclosed Reports☆86Updated 8 months ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆381Updated last year
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆77Updated 2 months ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆412Updated 3 months ago
- Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]☆217Updated 4 months ago
- My Private Bug Hunting Methodology☆275Updated last month
- Automatic Bug finder with buprsuite☆166Updated last year
- Advanced SQL Injection Techniques for Bug Bounty Hunters☆114Updated 5 months ago
- De-clutter a list of URLs☆312Updated last month
- ☆152Updated last year
- All the labs in this repository simulate real world bugs I found in the wild☆172Updated 5 months ago
- Cloud, WEB, API☆129Updated last month
- ☆94Updated 4 months ago
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆135Updated 3 months ago