Skip to content
Avatar
🤓
🤓

Organizations

@TheSecurityVault @DamnVulnerableCryptoApp
Block or Report

Block or report luisfontes19

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
luisfontes19/README.md

.Net AWS Amazon Alexa AmazonDynamoDB Angular.js Ant-Design Arduino Bootstrap CSS3 Chart.js Docker Electron.js Ethereum Express.js Gimp Gnu Image Manipulation Program GitHub Actions Git HTML5 JWT JavaScript Java Linux Mac OS Markdown MongoDB MySQL NPM NodeJS Postgres Rails Raspberry Pi React Ruby SASS Shell Script Solidity Spotify TypeScript Visual Studio Code Webpack

trophy


TheSecurityVault is my blog, where I do some writing about web vulnerabilities, usually not that well known by most people

Some of My Projects

XXExploiter - Tool to help exploit XXE vulnerabilities. It generates the XML payloads, and automatically starts a server to serve the needed DTD's or to do data exfiltration.



CSRFER - Tool to generate csrf payloads based on vulnerable requests. It parses supplied requests to generate either a form or a fetch request. The payload can then be embedded in an html template.



VSCode Swissknife - Scriptable VSCode extension to generate or manipulate data. Stop pasting sensitive data in webpages.



DamnVulnerableCryptoApp - An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit more about crypto, without the need to dive deep into the math behind it





The Combiner - Combines supplied words and generates a wordlist with all possible combinatios/permutations. Can also hash wordlist entries to look for an hash match


hash-identifier-js Started as a port to javascript of the python project hash-identifier. Identifies the algorithm used to generate the supplied hash

Pinned

  1. xxexploiter Public

    Tool to help exploit XXE vulnerabilities

    TypeScript 409 67

  2. An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit more about crypto, without the need to dive deep into the math…

    TypeScript 78 24

  3. CSRFER Public

    Tool to generate csrf payloads based on vulnerable requests

    TypeScript 49 13

  4. Simple tool to test for TIming Attacks

    TypeScript

  5. thecombiner Public

    Combines supplied words and generates all possible combinatios/permutations. Can also hash wordlist entries to look for an hash match

    TypeScript 2

  6. Scriptable VSCode extension to generate or manipulate data. Stop pasting sensitive data in webpages.

    TypeScript 34 6

262 contributions in the last year

Jun Jul Aug Sep Oct Nov Dec Jan Feb Mar Apr May Jun Mon Wed Fri

Contribution activity

Seeing something unexpected? Take a look at the GitHub profile guide.