0x00-0x00 / CVE-2016-2098Links
Ruby On Rails unrestricted render() exploit
☆16Updated 7 years ago
Alternatives and similar repositories for CVE-2016-2098
Users that are interested in CVE-2016-2098 are comparing it to the libraries listed below
Sorting:
- Burp extension for automated handling of CSRF tokens☆16Updated 7 years ago
- ☆19Updated 5 years ago
- A Burp Extender plugin that will allow you to tamper with requests containing compressed, serialized java objects.☆24Updated 6 years ago
- Abusing SketchUp to make persistence on Windows☆21Updated 6 years ago
- ☆21Updated 6 years ago
- A BurpSuite extension for beautifying .NET message parameters and hiding some of the extra clutter that comes with .NET web apps (i.e. __…☆12Updated 10 years ago
- DLL hijacking vulnerability scanner and PE infector tool☆20Updated 8 years ago
- Collection of different exploitation scenarios of JWT.☆21Updated 4 years ago
- a parser + crawler for .DS_Store files exposed publically☆56Updated 2 years ago
- Magento Security Scanner☆13Updated 4 years ago
- A tool that can help detect and takeover subdomains with dead DNS records☆12Updated 7 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆25Updated 6 years ago
- Spin up a reverse proxy quickly on Heroku☆15Updated 5 years ago
- Exactly what it sounds like, which is something rad☆22Updated 3 years ago
- A simple scanner to find and brute force tomcat manager logins☆27Updated 6 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆40Updated 4 years ago
- Scripts for OSCE☆18Updated 7 years ago
- Everything about xss protection technology☆14Updated 6 years ago
- ☆21Updated 6 years ago
- Miscellaneous C-Sharp projects for red team activities☆24Updated 3 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Python tool for expired domain discovery in crossdomain.xml files☆23Updated 8 years ago
- .net tool that uses WMI queries to enumerate active sessions and accounts configured to run services on remote systems☆36Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 7 years ago
- Accompanying material needed for the workshop☆11Updated 2 years ago
- Exploit PoC for CVE's and non CVE's alike☆22Updated 5 years ago
- ☆17Updated 7 years ago
- Burp Suite Professional extension in Java for Tabnabbing attack☆13Updated 7 years ago
- UUID issues for Burp Suite☆52Updated 3 years ago
- A playground to practice SSRF Attacks against web apps☆17Updated 7 years ago