A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON
☆116Mar 27, 2024Updated 2 years ago
Alternatives and similar repositories for jsmug
Users that are interested in jsmug are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Finds Documents On Cloud Assets Using grayhatwarfare API for short urls☆24Mar 2, 2022Updated 4 years ago
- Leverages B64 chunks to split files and save to clipboard☆26Jul 30, 2026Updated last month
- PoC for House of Husk Exploit☆13Apr 3, 2020Updated 6 years ago
- One line command and control backdoors for APIs and web applications.☆52Apr 9, 2024Updated 2 years ago
- study https://github.com/n132/Libc-GOT-Hijacking☆15Dec 7, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ASPFuzz: Fuzzing the AMD SP's ROM bootloader with LibAFL using QEMU full-system emulation☆31Apr 12, 2023Updated 3 years ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆312May 16, 2024Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Dec 18, 2023Updated 2 years ago
- PolicyKit CVE-2021-3560 Exploitation (Authentication Agent)☆25Mar 6, 2023Updated 3 years ago
- Everything about xss protection technology☆15Oct 22, 2019Updated 6 years ago
- A utility to fetch and display dns names from the SSL/TLS cert data☆15Aug 11, 2023Updated 3 years ago
- Tool to download IP ranges of CDN providers for bug bounties☆14Updated this week
- ☆43Nov 15, 2025Updated 10 months ago
- Generates a `php://filter` chain that adds a prefix and a suffix to the contents of a file.☆245Oct 8, 2024Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Scrape files for sensitive information, and generate an interactive HTML report. Based on Rabin2.☆19Feb 25, 2026Updated 6 months ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆10Sep 22, 2023Updated 3 years ago
- ☆65Mar 10, 2026Updated 6 months ago
- A MBR Fuzzer☆31Apr 3, 2024Updated 2 years ago
- The SAP Threat Modeling Tool is an on-premises open-source web application designed to analyze and visualize connections between SAP syst…☆52Mar 7, 2025Updated last year
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆91Feb 3, 2024Updated 2 years ago
- BurpSuite extension to convert requests into bcheck scripts☆34Jul 18, 2023Updated 3 years ago
- Fuzz anything with Program Environment Fuzzing☆398Jan 31, 2025Updated last year
- Signatures for wraith used to detect secrets across various sources☆15Jul 8, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Passively check for XSS character encodings☆20Mar 9, 2026Updated 6 months ago
- ☆70Jun 8, 2023Updated 3 years ago
- A set of open-source community scripts☆63Oct 12, 2024Updated last year
- ngrok Collaborator Link — yet another Burp Collaborator alternative for free with ngrok.☆116Jan 4, 2024Updated 2 years ago
- Subdomains wordlist generted from subdomains of public bug bounty programs☆11Mar 25, 2025Updated last year
- Gourlex is a simple tool that can be used to extract URLs and paths from web pages.☆258Mar 28, 2024Updated 2 years ago
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆30Jul 21, 2024Updated 2 years ago
- ☆147Mar 10, 2026Updated 6 months ago
- ☆37Jun 21, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A collection of Server-Side Prototype Pollution gadgets and exploits☆239Feb 6, 2025Updated last year
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Apr 9, 2026Updated 5 months ago
- CVE-2023-35078 Remote Unauthenticated API Access Vulnerability Exploit POC☆115Jul 29, 2023Updated 3 years ago
- Scan strings or files for malware using the Windows Antimalware Scan Interface☆30Mar 24, 2023Updated 3 years ago
- A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows☆308Sep 8, 2023Updated 3 years ago
- Hides message with invisible Unicode characters☆99Sep 29, 2024Updated last year
- Tools to bypass flawed SELinux policies using the init_module system call☆62Nov 20, 2023Updated 2 years ago