There are no reviews yet. Be the first to send feedback to the community and the maintainers!
Pastejacking
A demo of overriding what's in a person's clipboardWPA2-HalfHandshake-Crack
This is a POC to show it is possible to capture enough of a handshake with a user from a fake AP to crack a WPA2 network without knowing the passphrase of the actual AP.cssInjection
Stealing CSRF tokens with CSS injection (without iFrames)Snapper
A security tool for grabbing screenshots of many web hostsgcploit
These are tools we released with our 2020 defcon/blackhat talk https://www.youtube.com/watch?v=Ml09R38jpokXSSJacking
Abusing Self-XSS and Clickjacking to trigger XSSwindowHijacking
A demo of altering an opened tab after a timerAttackingAndDefendingTheGCPMetadataAPI
This repo gives an overview of some GCP metadata API attack and defend patternsDamn-Vulnerable-Redis-Container
An example of obtaining RCE via Redis and CSRFXSSOauthPersistence
Maintaining account persistence via XSS and Oauthwhatsinmyredis
A CSRF demonstration of stealing local Redis data, and encrypting all Redis instances on a local networkinputProtectionShield
CORS
JSON API's Are Automatically Protected Against CSRF, And Google Almost Took It Away.CSRF-PoC-Genorator
This is a simple CSRF Proof of Concept generator that supports multiple form encodings and methodsmimikittenz4Linux
Steals cleartext passwords from webservices, by reading the memory of browserssantaHog
Scans packages in npm and pypi for secretsclientHashing
A demonstration of secure hashing done client sidebygonessl
A tool to discover bygonessl vulnerabilities using the facebook APIlogger
Simple javascript logging of fingerprint, IP address and user agentSmartHealthCardViewer
Smart Health Card Viewer, view your California Smart Health Card Vaccination recordBitRush
An open source project for bitcoin mining on an FPGAdomainAbandonedDetector
Detects abandoned domains referenced in HTMLdxa4481.github.io
This is my resume, in HTML/CSSJayPi
Translating JTAGENUM to Python for the Raspberry Piredirect_demo
gpsIoTTracker
This simple python module takes GPS locations of a moving object, and measured signal strengths of an IoT object and uses trilateration and the method of least squares to solve for the location of the objectVeyebrations
We are creating a system that translates measured distances of physical objects into vibrations to assist the blindJohnWilliams
coolSVGXSS
simple demo of XSS in an SVGsecurity_reports
A simple template that can be used to deliver security reports either for bug bounties, internal reports, or consultancy workpenguin
A restful single page app tool sharing applicationVibrationAPI
An example of the HTML5 vibration APITutorials
Learning new thingsdotGitFinder
HIVStats
This application makes HIV statistics very accessiblelog_handler
The backend log handler for logger.ioSocialEngineeringPresentation
A simple presentation on social engineeringSoundMaker
This uses the open hardware provided by arduino to modify an arduino PCB into making a sound boardfingerprint-page-count
Counts how many times a user has viewed a page based on his browser's fingerprintblog
SeriousApiarist
Controlled builds, tests, static analysis, releases, and deploys with validation and 2FA and live streaming to your CIserviceworkerCSRFLogout
insecureLamp
a very simple insecure web application designed to turn a lamp on and offserverConfigs
The server configuration files for security.love and e-q.pwFingerprintPressure
This simple demo shows given an image of a fingerprint, you can determine how hard the person was pushing downAccelerometerAPI
A brief demonstration showing browsers can access a device's accelerator data without promoting a user. This app shows the total acceleration vector magnitudeCORS-pdf
This is a simple demo that shows you can host a PDF cross origin in chrome, and track a user's interaction with the PDF with the default chrome PDF viewer.Love Open Source and this site? Check out how you can help us