73696e65 / ctf-notes
☆23Updated 8 years ago
Alternatives and similar repositories for ctf-notes:
Users that are interested in ctf-notes are comparing it to the libraries listed below
- Python Web framework P0wner☆75Updated 12 years ago
- public exploits☆35Updated last year
- PHDAYS |||☆17Updated 11 years ago
- ActionScript Proof of Concept to perform cross-domain reads☆44Updated 11 years ago
- Files from Zeronights presentation.☆28Updated 12 years ago
- some example ctf writeups☆27Updated 4 years ago
- ☆70Updated 7 years ago
- Windows 8.1 x64 Exploit for MS16-098 RNGOBJ_Integer_Overflow☆91Updated 7 years ago
- Published vulnerabilities and exploits.☆55Updated 2 years ago
- Spray SMB with hashes, Then psexec☆32Updated 5 years ago
- ☆84Updated 8 years ago
- Burp Suite plugin which implement PyJFuzz for fuzzing web application.☆56Updated 7 years ago
- CVE-2017-9791☆27Updated 7 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 8 years ago
- A quick and dirty .NET "Deserialize_*" fuzzer based on James Forshaw's (@tiraniddo) DotNetToJScript.☆42Updated 6 years ago
- Highlight Burp proxy requests made by different browsers☆30Updated 7 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 8 years ago
- Tests for different parsers from Ruby, Python, .NET, PHP, Perl, Java☆56Updated 8 years ago
- ActionScript Proof of Concept to perform cross-domain reads☆16Updated 11 years ago
- Test CVE-2018-0296 and extract usernames☆106Updated 6 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- Extension adds a new tab in Burp Suite called Extractor☆43Updated 5 years ago
- ☆22Updated 9 years ago
- A simple script for exploit RCE for Struts 2 S2-053(CVE-2017-12611)☆36Updated 7 years ago
- Java Untrusted Deserialization Exploits Tools☆66Updated 9 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 9 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago
- Scripts and auxiliary files for fuzzing PHP's unserialize function☆43Updated 7 years ago