Giter Site home page Giter Site logo

Picard Waving

Hi! 👋

My real name is Dave Hanson. I'm an application security engineer.

Stay curious, be passionate!

JeffreyShran_Twitter_Profile

Dave Hanson's Projects

gadgetinspector icon gadgetinspector

A byte code analyzer for finding deserialization gadget chains in Java applications

gadgetprobe icon gadgetprobe

Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.

go-stare icon go-stare

A fast & light web screenshot without headless browser but Chrome DevTools Protocol!

goaltdns icon goaltdns

A permutation generation tool written in golang

gojeffgo icon gojeffgo

Debian golang version is always behind, this short shell script will pull the latest direct from Google.

h2rs icon h2rs

Detects request smuggling via HTTP/2 downgrades.

hacktricks icon hacktricks

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

httprebind icon httprebind

Automatic tool for DNS rebinding-based SSRF attacks

interaction icon interaction

Provides a convention for modelling user interactions as use case classes.

ipsourcebypass icon ipsourcebypass

This Python script can be used to bypass IP source restrictions using HTTP headers.

javadeserh2hc icon javadeserh2hc

Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).

jwt_tool icon jwt_tool

:snake: A toolkit for testing, tweaking and cracking JSON Web Tokens

leaky-paths icon leaky-paths

A collection of special paths linked to major web CVEs, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.

linkfinder icon linkfinder

A python script that finds endpoints in JavaScript files

markdownload icon markdownload

A Firefox and Google Chrome extension to clip websites and download them into a readable markdown file.

mjet icon mjet

MOGWAI LABS JMX exploitation toolkit

pipelines-java icon pipelines-java

Sample Java application referred to by Azure Pipelines documentation

ppmap icon ppmap

A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.

pyhprof icon pyhprof

Parse HPROF files from the Spring Boot Heapdump Actuator

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.