-
Truffle Security @trufflesecurity
- USA
- https://security.love
- @InsecureNature
-
cloud-builders-community Public
Forked from GoogleCloudPlatform/cloud-builders-communityCommunity-contributed images for Google Cloud Build
Dockerfile Apache License 2.0 UpdatedFeb 11, 2020 -
-
-
bygonessl Public
A tool to discover bygonessl vulnerabilities using the facebook API
-
-
-
XSSOauthPersistence Public
Maintaining account persistence via XSS and Oauth
-
-
cssInjection Public
Stealing CSRF tokens with CSS injection (without iFrames)
-
domainAbandonedDetector Public
Detects abandoned domains referenced in HTML
-
Snapper Public
A security tool for grabbing screenshots of many web hosts
-
github-fork-ribbon-css Public
Forked from simonwhitaker/github-fork-ribbon-cssA CSS-only, resolution-independent "Fork me on GitHub" ribbon.
HTML MIT License UpdatedJul 11, 2017 -
CSRF-PoC-Genorator Public
This is a simple CSRF Proof of Concept generator that supports multiple form encodings and methods
-
CORS Public
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.
-
goutil Public
Forked from dustin-decker/goutilCommon utils I use for slice operations, secret management, etc
Go Apache License 2.0 UpdatedMay 15, 2017 -
deflEK Public
Forked from dustin-decker/deflekIndex-level RBAC for Elasticsearch and Kibana via reverse proxy
Go Apache License 2.0 UpdatedMay 15, 2017 -
ComposeEnforcer Public
Forked from dustin-decker/compose-enforcerComposeEnforcer validates that a provided docker-compose file meets restrictions set.
Go Apache License 2.0 UpdatedMay 15, 2017 -
SeriousApiarist Public
Controlled builds, tests, static analysis, releases, and deploys with validation and 2FA and live streaming to your CI
-
goproxy Public
Forked from elazarl/goproxyAn HTTP proxy library for Go
-
XSSJacking Public
Abusing Self-XSS and Clickjacking to trigger XSS
-
whatsinmyredis Public
A CSRF demonstration of stealing local Redis data, and encrypting all Redis instances on a local network
-
mimikittenz4Linux Public
Steals cleartext passwords from webservices, by reading the memory of browsers
-
An example of obtaining RCE via Redis and CSRF
-
prace-latex-whitepaper Public
Forked from mlouhivu/prace-latex-whitepaperLaTeX template for a PRACE RI white paper
TeX Other UpdatedAug 29, 2016 -
security_reports Public
A simple template that can be used to deliver security reports either for bug bounties, internal reports, or consultancy work
-
fierce Public
Forked from mschwager/fierceA DNS reconnaissance tool for locating non-contiguous IP space.
-
windowHijacking Public
A demo of altering an opened tab after a timer
-
-
-
HIVStats Public
This application makes HIV statistics very accessible