NDevTK's starred repositories

pyscript

Try PyScript: https://pyscript.com Examples: https://tinyurl.com/pyscript-examples Community: https://discord.gg/HxvBtukrg2

Language:PythonLicense:Apache-2.0Stargazers:17573Issues:169Issues:779

trufflehog

Find and verify secrets

Language:GoLicense:AGPL-3.0Stargazers:14822Issues:170Issues:608

pyodide

Pyodide is a Python distribution for the browser and Node.js based on WebAssembly

Language:PythonLicense:MPL-2.0Stargazers:11787Issues:128Issues:1658

unredacter

Never ever ever use pixelation as a redaction technique

Language:TypeScriptLicense:GPL-3.0Stargazers:7678Issues:69Issues:28

dalfox

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

privacyguides.org

Protect your data against global mass surveillance programs.

Language:MarkdownLicense:CC-BY-SA-4.0Stargazers:2604Issues:41Issues:423

awesome-google-vrp-writeups

🐛 A list of writeups from the Google VRP Bug Bounty program

noscript

The popular NoScript Security Suite browser extension.

Language:JavaScriptLicense:GPL-3.0Stargazers:834Issues:23Issues:331

Run-in-Sandbox

Run PS1, VBS, CMD, EXE, MSI, Intunewin, MSIX, or extract ISO, ZIP in Windows Sandbox very quickly just from a right-click

extension-detector

Check how trackable you are based on your browser extensions.

Language:JavaScriptLicense:MITStargazers:522Issues:8Issues:4

certmitm

A tool for testing for certificate validation vulnerabilities of TLS connections made by a client device or an application.

Language:PythonLicense:MITStargazers:259Issues:8Issues:5

chrome-bandit

Programmatically extract saved passwords from Chromium based browsers.

Language:RubyLicense:MITStargazers:123Issues:3Issues:2

blog-indexeddb-safari-leaks-demo

Demo showcasing information leaks resulting from an IndexedDB same-origin policy violation in WebKit.

Language:JavaScriptLicense:MITStargazers:102Issues:8Issues:1

TCC-ClickJacking

A proof of concept for a clickjacking attack on macOS.

Language:SwiftStargazers:91Issues:3Issues:0

fcors

An experimental CORS middleware library for Go. Consider using jub0bs/cors (its successor) instead.

Language:GoLicense:MITStargazers:82Issues:1Issues:0

XSLeaker

Searcher for cross-site leaks (XS-Leaks)

xsinator.com

XS-Leak Browser Test Suite

Language:JavaScriptLicense:GPL-3.0Stargazers:70Issues:9Issues:3

same-origin-xss

Same Origin XSS challenge

Language:HTMLStargazers:57Issues:3Issues:0

nathanfarlow

Pokemon on your GitHub profile!

Language:PythonStargazers:31Issues:3Issues:0

CVE-2022-32883

Turning Your Computer Into a GPS Tracker With Apple Maps

Language:RubyStargazers:18Issues:1Issues:0

deprecating-document-domain

`document.domain` intentionally weakens the only security boundary we have. Perhaps we can dump it?

License:NOASSERTIONStargazers:16Issues:7Issues:0

xs-observations

Find leaky observation channels in browsers and XS-Leaks on websites

Language:Jupyter NotebookLicense:MITStargazers:12Issues:0Issues:0

Partitioning-visited-links-history

A proposal to partition :visited link history by top-level site and frame origin.

AutoLeak

Find XS-Leaks in the browser by diffing DOM-Graphs in two states

Language:JavaScriptLicense:GPL-3.0Stargazers:12Issues:3Issues:0

why-is-sb-down

Why is SponsorBlock down?!

Language:JavaScriptStargazers:11Issues:1Issues:0

2022AprilFools

Based on https://github.com/ajayyy/SponsorBlockSite

Language:JavaScriptLicense:MITStargazers:5Issues:2Issues:0

LeakuidatorPlus

Leakuidator+ helps users to protect themselves against cross-site leaks, a class of vulnerabilities derived from side-channels built into the web platform.

Language:JavaScriptStargazers:5Issues:0Issues:0
Language:JavaScriptStargazers:2Issues:2Issues:0
Language:BatchfileStargazers:1Issues:0Issues:0
Stargazers:1Issues:0Issues:0