smuggler

Desync tester

An HTTP Request Smuggling / Desync testing tool written in Python 3

Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3

GitHub

2k stars
32 watching
297 forks
Language: Python
last commit: 11 months ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
amirnsahmad/smuggler A tool for testing HTTP request smuggling and desync issues in web servers. 13
anshumanpattnaik/http-request-smuggling Detects HTTP Request Smuggling vulnerabilities in web applications 472
portswigger/http-request-smuggler An extension for Burp Suite to help identify and exploit HTTP Request Smuggling vulnerabilities. 958
nachiketrathod/http.request.smuggling.desync.attack An attacker exploits HTTP request smuggling to manipulate the sequence of requests and deceive both front-end and back-end security controls. 14
portswigger/json-decoder Tools for analyzing and manipulating HTTP requests and responses in BurpSuite 10
dugsong/pypcap A Python wrapper around libpcap for capturing and analyzing network packets 117
paulsec/det A toolkit for testing network monitoring and data leakage prevention solutions against various data exfiltration techniques 158
bishopfox/h2csmuggler Smuggling HTTP traffic past proxy rules to bypass access controls 650
trycatchhcf/packetwhisper A tool for stealthy data transfer using DNS queries and text-based steganography to evade attribution and detection. 623
portswigger/crypto-attacker A collection of tools and scripts for penetration testing and vulnerability assessment of web applications. 2
detectify/varnish-h2-request-smuggling A Docker-based test environment for simulating a Varnish HTTP/2 request smuggling vulnerability 55
realpython/django-slow-tests Identifies and reports on the slowest tests in a Django application 182
cyal1/pyburp An extension that allows modifying HTTP requests and responses with Python code to facilitate security testing of encrypted transactions 22
rumpkernel/drv-netif-dpdk A userspace TCP/IP stack that uses DPDK to perform packet I/O. 197
shipcod3/cantot A Python-based framework for automating CAN Bus vulnerability testing and exploitation 126