仓库
cure53 的仓库
A small collection of potentially useful contract templates
DOMFortify turns on Trusted Types for a page and quietly takes over the browser's default policy, so that old, vulnerable HTML sinks get auto-sanitized before bad markup ever hits the DOM.
DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:
The repository for high quality TypeScript type definitions.
Project "Flashbang" - An open-source Flash-security helper
HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors
HTTPLeaks - All possible ways, a website can leak HTTP requests
A listing of people and projects involved in the Mozilla Open Source Support (MOSS) program
This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks
A whole bunch of public pentest reports & papers
Welcome to the XSS Challenge Wiki!
Cure53 Browser Security White Paper
Crev proof repository
PHP hash "collisions"
jPurify
A free Open Source CDN for webmasters and developers
A markdown parser and compiler. Built for speed.
Automatically exported from code.google.com/p/mustache-security
Curated list of public penetration testing reports released by several consulting firms