C4l1b4n / NoSQL-Attack-Suite
A couple of different scripts, made to automate attacks against NoSQL databases.
☆62Updated 10 months ago
Alternatives and similar repositories for NoSQL-Attack-Suite:
Users that are interested in NoSQL-Attack-Suite are comparing it to the libraries listed below
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆82Updated last year
- ☆72Updated 8 months ago
- WPXStrike is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's criticals…☆65Updated last year
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.☆47Updated 2 years ago
- Drupalwned is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆40Updated last year
- HTTP verb tampering & methods enumeration☆55Updated 2 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆43Updated 10 months ago
- ☆17Updated 9 months ago
- ☆117Updated 11 months ago
- ☆67Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆74Updated last year
- Red Teaming tools and techniques☆48Updated last year
- Yet Another PHP Shell - The most complete PHP reverse shell☆81Updated 2 years ago
- Evade the boys in blue and acquire a reverse shell using powercat v2.0☆51Updated 2 years ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆68Updated 10 months ago
- ☆50Updated 7 months ago
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- LFITester is a Python3 program that automates the detection and exploitation of Local File Inclusion (LFI) vulnerabilities on a server.☆106Updated last month
- Apache Tomcat exploit and Pentesting guide for penetration tester☆56Updated 2 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆32Updated last year
- This Repository contains my CRTP cum Red Teaming Active Directory attack and Defence preparation notes.☆34Updated 5 months ago
- Mining URLs from Wayback Machine for bug hunting/fuzzing/further probing☆56Updated last year
- A wordlist generator tool, that allows you to supply a set of words, giving you the possibility to craft multiple variations from the giv…☆87Updated last year
- ☆51Updated 2 years ago
- Red Teaming and Penetration Testing Checklist, Cheatsheet, Clickscript☆88Updated last year
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆39Updated 2 years ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆67Updated 10 months ago
- this script will help you find favicon hashes which you can use to shodan to get more details about an asset☆28Updated last year
- WooCommerce Payments: Unauthorized Admin Access Exploit☆39Updated last year