AonCyberLabs / PadBuster
Automated script for performing Padding Oracle attacks
☆765Updated 7 months ago
Alternatives and similar repositories for PadBuster:
Users that are interested in PadBuster are comparing it to the libraries listed below
- A tool for embedding XXE/XML exploits into different filetypes☆1,070Updated 2 months ago
- fimap is a little python tool which can find, prepare, audit, exploit and even google automatically for local and remote file inclusion b…☆530Updated 2 years ago
- Create tar/zip archives that can exploit directory traversal vulnerabilities☆993Updated 3 years ago
- Herramienta para evadir disable_functions y open_basedir☆406Updated last year
- Finds unknown classes of injection vulnerabilities☆652Updated last year
- ReverShellGenerator - A tool to generate various ways to do a reverse shell☆560Updated 10 months ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,597Updated 3 months ago
- kadimus is a tool to check and exploit lfi vulnerability.☆526Updated 4 years ago
- BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source c…☆545Updated 2 years ago
- ☆262Updated 5 years ago
- AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.☆622Updated 11 months ago
- latest version of scanners for IIS short filename (8.3) disclosure vulnerability☆1,492Updated last year
- DotDotPwn - The Directory Traversal Fuzzer☆1,022Updated 2 years ago
- A DNS rebinding attack framework.☆1,064Updated last month
- A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.☆969Updated 7 years ago
- Collection of Proof of Concepts and Potential Targets for #ShellShocker☆888Updated 4 years ago
- ☆637Updated 5 months ago
- Python PTY backdoors - full PTY or nothing!☆742Updated 10 years ago
- SSRF Proxy facilitates tunneling HTTP communications through servers vulnerable to Server-Side Request Forgery.☆457Updated 7 years ago
- Modified version of the passing-the-hash tool collection made to work straight out of the box☆568Updated 10 years ago
- A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques☆718Updated 5 years ago
- Contents for Node.Js Security Course☆334Updated 4 years ago
- Search for Directory Traversal Vulnerabilities☆427Updated 8 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated last year
- RSMangler will take a wordlist and perform various manipulations on it similar to those done by John the Ripper with a few extras.☆220Updated 5 years ago
- Linux privilege escalation exploit via snapd (CVE-2019-7304)☆666Updated 5 years ago
- ODAT: Oracle Database Attacking Tool☆1,644Updated 7 months ago
- A small tool that extracts relative URLs from a file.☆744Updated 4 years ago
- A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.☆541Updated 7 years ago
- Pillage web accessible GIT, HG and BZR repositories☆315Updated 8 years ago