xiaofen9 / Lynx
A Node.js vulnerability finding tool.
☆96Updated 4 years ago
Alternatives and similar repositories for Lynx:
Users that are interested in Lynx are comparing it to the libraries listed below
- research☆151Updated 11 months ago
- A tool to perform Sequential Import Chaining☆259Updated 5 years ago
- A curated list of awesome browser security learning material.☆139Updated 2 years ago
- Simple "postMessage logger" Chrome extension☆94Updated 4 years ago
- Burp Suite Extension to monitor new scope☆197Updated 3 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆258Updated 3 years ago
- Grammar-based HTTP/1 fuzzer with mutation ability☆247Updated 4 months ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆347Updated 2 years ago
- ☆128Updated 4 years ago
- DNS rebinding toolkit☆252Updated last year
- DupeKeyInjector☆135Updated 2 years ago
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆197Updated 6 years ago
- XS-Leaks Wiki☆156Updated last month
- This repository includes a set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard cer…☆285Updated last month
- ☆160Updated 7 years ago
- Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"☆348Updated 4 years ago
- ☆181Updated 3 months ago
- Automatic tool for DNS rebinding-based SSRF attacks☆297Updated 4 years ago
- A tiny and cute URL fuzzer☆392Updated 2 years ago
- A test suite built with Mocha/Chai to test for behavioral differences between image libraries for the web☆70Updated 4 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆50Updated 7 years ago
- secretz, minimizing the large attack surface of Travis CI☆325Updated 2 years ago
- SHELLING - a comprehensive OS command injection payload generator☆107Updated 5 years ago
- Funny project to create an encoder/obfuscator that converts any javascript code into a code that only consist of /[a-z().]/ characters☆76Updated 5 years ago
- Companion labs to "An Exploration of JSON Interoperability Vulnerabilities"☆201Updated last year
- ☆52Updated 9 months ago
- Cure53 Browser Security White Paper☆288Updated 7 years ago
- ☆17Updated 6 years ago
- Fuzzing script for redirect URL validator☆49Updated 5 years ago
- A simple SSRF-testing sheriff written in Go☆324Updated 4 months ago