CSPF-Founder / VulnerableSpring
Vulnerable Java based Web Application
☆31Updated 5 years ago
Alternatives and similar repositories for VulnerableSpring:
Users that are interested in VulnerableSpring are comparing it to the libraries listed below
- Burp Suite extension to passively scan for applications revealing server error messages☆66Updated last year
- Burp extension to help developers replicate findings from pen tests☆70Updated 9 months ago
- Highlight Burp proxy requests made by different browsers☆30Updated 7 years ago
- ☆70Updated 7 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆84Updated 5 years ago
- RCE Exploit PoC for Spring based RESTFul APIs using XStream as Unmarshaler☆20Updated 11 years ago
- This repository for training application security.☆26Updated 5 years ago
- Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro☆53Updated 11 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 5 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 8 years ago
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 5 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- OAuth plugin for Burp Suite Extender☆42Updated 6 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 11 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 7 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 8 years ago
- A collection of scripts used to interact with the Burp Rest API☆52Updated 6 years ago
- Burp Suite extension for JAX-RS☆65Updated 8 years ago
- Burp extension to passively scan for applications revealing software version numbers☆31Updated 11 months ago
- HTML5 WebSocket message fuzzer☆145Updated 6 years ago
- Various tools for managing bug bounty recon and exploration.☆47Updated 2 years ago
- Vulnerable software and exploits used for OSCP/OSCE preparation☆24Updated 7 years ago
- Burp Suite plugin that allow to deserialize Java objects and convert them in an XML format. Unpack also gzip responses. Based on BurpJDSe…☆20Updated last year
- An interactive OOB XXE data exfiltration tool☆90Updated 7 years ago
- A Burp plugin to dump HTTP(S) requests/responses to a file system☆24Updated 7 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆27Updated 6 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆52Updated 4 years ago
- Study about HQL injection exploitation.☆51Updated 8 years ago