xsscx / Commodity-Injection-Signatures
Commodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLT
☆393Updated 5 months ago
Alternatives and similar repositories for Commodity-Injection-Signatures:
Users that are interested in Commodity-Injection-Signatures are comparing it to the libraries listed below
- SSRF testing tool☆243Updated 2 years ago
- HTTP file upload scanner for Burp Proxy☆397Updated last year
- Payloads for CRLF Injection☆221Updated 3 months ago
- Open Redirect Payloads☆594Updated 3 months ago
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆309Updated last year
- Repository for hosting my research papers☆505Updated 9 months ago
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆522Updated 6 years ago
- Various Payload wordlists☆234Updated 4 years ago
- This repository contains all the supplement material for the book "The art of sub-domain enumeration"☆638Updated 5 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆267Updated 3 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆684Updated last year
- Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)☆448Updated 5 years ago
- A small tool that extracts relative URLs from a file.☆738Updated 4 years ago
- A Powerful Subdomain Takeover Tool☆939Updated last year
- Trying to make automated recon for bug bounties☆251Updated 3 years ago
- An hourly updated list of subdomains gathered from certificate transparency logs☆342Updated 3 years ago
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆442Updated 4 years ago
- BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source c…☆539Updated 2 years ago
- Finds unknown classes of injection vulnerabilities☆643Updated last year
- List DTDs and generate XXE payloads using those local DTDs.☆617Updated 10 months ago
- Bugbounty scope tool☆323Updated last month
- A script to enumerate virtual hosts on a server.☆669Updated 7 years ago
- Generates lists of live hosts and URLs for targeting, automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts a…☆365Updated 2 years ago
- ☆352Updated 2 years ago
- Tools of "The Bug Hunters Methodology V2 by @jhaddix"☆198Updated 7 years ago
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆356Updated last year
- this contain the burp pack☆206Updated 7 years ago
- Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.☆307Updated 3 years ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆254Updated 6 months ago