0xless / slip
Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z, jar, war, apk and ipa archives.
☆88Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for slip
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated 7 months ago
- Repository to store exploits created by Assetnotes Security Research team☆175Updated last year
- Some tips for Bug Bounty using LibreOffice☆33Updated this week
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆45Updated 11 months ago
- Tool to enable blind sql injection attacks against websockets using sqlmap☆57Updated last year
- ☆71Updated 4 months ago
- Java archive implant toolkit.☆53Updated 2 months ago
- bbs is a router for SOCKS and HTTP proxies. It exposes a SOCKS5 (or HTTP CONNECT) service and forwards incoming requests to proxies or ch…☆82Updated 3 weeks ago
- Kooky cURL-powered replacement for reverse shell via /dev/tcp☆53Updated 3 weeks ago
- Burp Extension to add additional functionality for pentesting websocket based applications☆83Updated 5 months ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆63Updated 10 months ago
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆52Updated 5 months ago
- Everything and anything related to password spraying☆126Updated 6 months ago
- Proof of Concept Exploit for PaperCut CVE-2023-27350☆47Updated last year
- A Burp extension to help pentesters copy requests / responses for reports.☆34Updated 4 months ago
- List of some AD tools I frequently use☆43Updated last month
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆118Updated 7 months ago
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated last year
- A blazing fast Blind SQL Injection optimization and automation framework.☆118Updated last week
- Fortinet FortiClient EMS SQL Injection☆43Updated 8 months ago
- Small toolkit for extracting information and dumping sensitive strings from Windows processes☆107Updated 4 months ago
- Veeam Backup Enterprise Manager Authentication Bypass (CVE-2024-29849)☆86Updated 5 months ago
- ☆73Updated 4 months ago
- ☆32Updated this week
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆65Updated 8 months ago
- Authentication Bypass in GoAnywhere MFT☆64Updated 9 months ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆60Updated 2 months ago
- Hacking Windows through iTunes - Local Privilege Escalation 0-day☆91Updated last month