clickjacking

There are 64 repositories under clickjacking topic.

  • Hacker0x01/hacker101

    Source code for Hacker101.com - a free online web and mobile security class.

    Language:SCSS14.3k6851252.6k
  • Ultimate-Hosts-Blacklist/Ultimate.Hosts.Blacklist

    The Ultimate Unified Hosts file for protecting your network, computer, smartphones and Wi-Fi devices against millions of bad web sites. Protect your children and family from gaining access to bad web sites and protect your devices and pc from being infected with Malware or Ransomware.

    Language:Shell1.5k69691167
  • mitchellkrogza/The-Big-List-of-Hacked-Malware-Web-Sites

    This repository contains a list of all web sites I come across that are either hacked with or purposefully hosting malware, ransomware, viruses or trojans.

    Language:Shell294211195
  • mike-works/web-security-fundamentals

    Mike North's Web Security Course

    Language:JavaScript260519118
  • D4Vinci/Clickjacking-Tester

    A python script designed to check if the website if vulnerable of clickjacking and create a poc

    Language:Python15213360
  • mitchellkrogza/Badd-Boyz-Hosts

    A hosts file for use on any operating system to block bad domains out of your servers or devices.

    Language:Shell112117825
  • odino/wasec

    Examples of security features (or mishaps) on web applications -- these are mostly examples and tutorials from the WASEC book.

    Language:JavaScript975059
  • breakpointHQ/TCC-ClickJacking

    A proof of concept for a clickjacking attack on macOS.

    Language:Swift953015
  • beerphilipp/taptrap

    TapTrap is a new attack on Android that lures you into performing actions you did not intend to do. This allows an app to silently access your camera or location, or even erase your entire device — all without your consent.

    Language:Rust639
  • marcocesarato/PHP-AIO-Security

    The objective of this class is offer an automatic system of protection for developers's projects and simplify some security operations as the check of CSRF or XSS all in a simple class. Infact you could just call the main method to have better security yet without too much complicated operations.

    Language:PHP4081114
  • paveldat/Gods-eye

    The God's EYE in Python

    Language:Python31118
  • ravro-ir/golang_bug_hunting

    Live for Go hackers (bug bounty)

    Language:Python27101
  • root4031/clickjack

    An efficient tool To Find click jacking vulnerabilities in easiest way with poc

    Language:Shell2711
  • praneshn99/web_security_testing

    Repository contains an online education portal filled with web vulnerabilities.

    Language:PHP21206
  • ClickMe

    Hacking-Notes/ClickMe

    Clickme is a powerful multi-step clickjacking tool designed for security professionals. Create, visualize, and demonstrate complex clickjacking attacks with customizable elements and real-time preview functionality.

    Language:JavaScript13101
  • Lexxrt/Blue

    🕵️‍♂️ɪɴғᴏʀᴍᴀᴛɪᴏɴ ɢᴀᴛʜᴇʀɪɴɢ ᴛᴏᴏʟ🕵️‍♂️

    Language:Python10202
  • lillypad/click-jack

    Clickjacking Template

    Language:HTML9105
  • theamanrawat/voobar

    All in one subdomain and vulnerability scanner

    Language:Python8204
  • Brainhub24/TitanShield

    A classical Frameblocker for Websites

    Language:Hack6200
  • stawuah/Guardify

    Guardify is a Node.js middleware designed to enhance the security of your web applications by setting various HTTP security headers. It is easy to integrate and customizable based on your specific security requirements.

    Language:JavaScript6100
  • LinuxUser255/Web-Security-Academy-Series

    Exploit Code, notes, and resources to accompany PortSwiggers' WebAcademy Labs.

    Language:Python5102
  • lurumad/codemotion2017

    Codemotion Madrid 2017

    Language:C#5303
  • TendTo/clickjacking-example-app

    Sample application to showcase how clickjacking works and a simple precaution to avoid it.

    Language:EJS4200
  • 0zk3y/ClickJacker

    A simple Python Script which can check multiple Domains in File for Vulnerability of ClickJacking

    Language:Python3120
  • htmlhack/hack-yourself-first-solutions

    solutions of hack-yourself-first

  • 0x00000FF/DaechungCon-Safe-WebApp

    "모던 웹을 이용한 안전한 웹 앱 손쉽게 설계하기", 제 2회 대충콘 세미나 발표 및 시연 자료

  • garnetred/let-there-be-light

    A Chrome extension to limit clickjacking by setting the opacity of all iframes to 1 by default.

    Language:HTML20
  • hpcao299/eximbank_fake

    This is a code repository of Eximbank's login website.

    Language:CSS2100
  • mnestorov/security-headers-cloudflare-worker

    Cloudflare Worker script to dynamically add, modify, and remove HTTP headers for enhancing the security of any website.

  • tanish-mahajan/clickjacking-tester

    A simple Python Flask app to test whether a website is vulnerable to clickjacking by attempting to load it in an <iframe> and checking for security headers like X-Frame-Options and Content-Security-Policy.

    Language:Python2
  • ADScanPro/clickjacking-poc-generator

    An automated tool to generate HTML Proof of Concept files for clickjacking vulnerabilities. This tool helps security researchers and penetration testers create professional PoCs to demonstrate clickjacking attacks.

    Language:Python1
  • reconx

    mrofcodyx/reconx

    ReconX — Lightweight Python CLI for OSINT & network reconnaissance (subdomains, nmap, whois, clickjacking PoC, headers, geolocation)

    Language:Python1
  • NitishSharma61/clickjacking-security-simulator

    Interactive cybersecurity training platform demonstrating real-world clickjacking attacks including social media hijacking, credential theft, and permission exploitation. Built with Next.js, featuring live browser API integration and comprehensive security education.

    Language:TypeScript1
  • shantanuv09/Web-Exploit-Toolkit

    Web-Exploit-Toolkit AKA WET: A Python-based tool for automated testing of common web vulnerabilities like XSS, CSRF, SQL Injection, HTML Injection, Open Redirect, and Directory Traversal. Supports GET/POST injection, custom payloads, cookie/session authentication, and OS-aware payload optimization. Designed for authorized security testing only.

    Language:Python1000
  • tausifzaman/T4Dragon

    T4Dragon is a modern login bruteforcer which also tests for CSRF, Clickjacking, Cloudflare and WAF .

    Language:Python1