Captain-K-101 / Ssrf-labs
This Lab contain the sample codes Basic Labs related to Server-Side Request Forgery attack
☆20Updated 4 years ago
Alternatives and similar repositories for Ssrf-labs:
Users that are interested in Ssrf-labs are comparing it to the libraries listed below
- This includes all the templates of nuclei collected from different sources☆17Updated 2 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 3 years ago
- ☆11Updated 2 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated last year
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- Some of the gf patterns which i use☆40Updated 3 years ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆56Updated last year
- Just simple log4j scanner☆12Updated 3 years ago
- ☆42Updated 3 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 4 years ago
- Check if domain has bug bounty program or not☆29Updated last year
- Log4jScanner is a Log4j Related CVEs Scanner, Designed to Help Penetration Testers to Perform Black Box Testing on given subdomains.☆39Updated 3 years ago
- ☆21Updated 3 years ago
- ☆17Updated 11 months ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- XSS reflector vulnerabilities exploitation extended.☆26Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- [CVE-2024-4956] Nexus Repository Manager 3 Unauthenticated Path Traversal Bulk Scanner☆14Updated 4 months ago
- Passively check for XSS character encodings☆18Updated last year
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- Every Nuclei template that has ever appeared on Github☆26Updated 2 years ago
- Nuclei Templates☆11Updated 2 years ago
- Web cache poisoning vulnerability scanner.☆64Updated 2 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆21Updated 4 years ago
- ☆43Updated last year
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆31Updated 10 months ago
- Chameleon Wordlists☆15Updated 2 years ago
- Alias for storing ffuf results☆20Updated 4 years ago
- Turns a list of URLs into hostnames.☆16Updated last year