Skip to content
Edoardo Ottavianelli edited this page Feb 4, 2024 · 3 revisions

Welcome to the pphack wiki!

pphack is a CLI tool for scanning websites for client-side prototype pollution vulnerabilities.

Learn about this type of vulnerability here: Portswigger - prototype-pollution/client-side

  • Fast (concurrent workers)
  • Default payload covers a lot of cases
  • Payload and Javascript customization
  • Proxy-friendly
  • Support output in a file
  • Rate-limit supported

If you need a test target use https://edoardottt.github.io/pp-test/

Clone this wiki locally