A training CTF covering non-blind SQL injection techniques
☆73Jan 10, 2018Updated 8 years ago
Alternatives and similar repositories for SQLi-CTF
Users that are interested in SQLi-CTF are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A tool that can help detect and takeover subdomains with dead DNS records☆12Aug 23, 2018Updated 8 years ago
- Simple webinterface combining different recon tools.☆12Mar 2, 2018Updated 8 years ago
- Web Exploitation Workflow for CTF Challenges☆54Dec 11, 2016Updated 9 years ago
- Golang code to crawl website, extract links from html, paths from JavaScript code, follow and repeat.☆12Jun 4, 2018Updated 8 years ago
- All Security Engineering Resources☆14Feb 2, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A playground to practice SSRF Attacks against web apps☆17Oct 15, 2018Updated 7 years ago
- Hackfest Talk - Abusing PHP 7’s OPcache to Spawn Webshells☆10Nov 6, 2016Updated 9 years ago
- A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use☆14Aug 30, 2018Updated 8 years ago
- RITSEC Weekly Labs☆11Mar 3, 2019Updated 7 years ago
- Wax is a mediocre fuzzer I'm prototyping to test some ideas and get rid of others.☆17Jul 12, 2018Updated 8 years ago
- 仓库已经废弃,新仓库地址☆47May 26, 2017Updated 9 years ago
- Lab Website For Practicing Different Types of SQL Injection Vulnerabilities☆21Oct 27, 2023Updated 2 years ago
- ☆22Sep 8, 2017Updated 8 years ago
- ☆20Jan 25, 2019Updated 7 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 一个Fuzzing服务器端模板注入漏洞的半自动化工具☆15Aug 4, 2016Updated 10 years ago
- Vulnerable webapp testbed☆26May 11, 2016Updated 10 years ago
- ☆16Oct 27, 2021Updated 4 years ago
- Dashboard/API + DNS/HTTP Servers to identify Out of Band Resolution in Payloads☆38Jun 10, 2021Updated 5 years ago
- little scripts of bash stuff that i've found handy.☆16Feb 2, 2019Updated 7 years ago
- This Burp extension helps you to find usages of postMessage and recvMessage☆14Feb 20, 2020Updated 6 years ago
- a multithreaded fast tool to preform active subdomain enumeration☆36Sep 13, 2022Updated 3 years ago
- thinkphp5 远程代码执行漏洞,交互式利用脚本☆25Dec 11, 2018Updated 7 years ago
- Drupal8's REST RCE, SA-CORE-2019-003, CVE-2019-6340☆71Jun 10, 2020Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Simple script to get your private/public or both programs using the Hackerone graphql.☆22Jan 24, 2020Updated 6 years ago
- Challenge repo from TAMUctf 2019☆48Mar 4, 2019Updated 7 years ago
- Broken Link Hijacking Burp Extension☆59Sep 13, 2019Updated 6 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Mar 11, 2021Updated 5 years ago
- A VM for RE and Pwn☆25May 15, 2026Updated 3 months ago
- Packet Analysis on Steroids☆14Oct 20, 2022Updated 3 years ago
- Collection of scripts that aid in penetration testing of JSON Web Tokens☆58Feb 2, 2019Updated 7 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆43Sep 24, 2012Updated 13 years ago
- Apache 2.4.50 Path traversal vulnerability☆15Aug 30, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- 通达OA RCE漏洞☆78Mar 18, 2020Updated 6 years ago
- WebDigger is a python based tool, specially created to get a company's unknown domain for pentestor.☆17Aug 6, 2016Updated 10 years ago
- Volatility plugin to search for all Autostart Extensibility Points (AESPs)☆10Jun 13, 2026Updated 2 months ago
- A pwning environment, now on docker!☆18Jul 3, 2021Updated 5 years ago
- XXE techniques☆14Oct 10, 2021Updated 4 years ago
- Fuzzing Framework☆10Oct 23, 2017Updated 8 years ago
- Pricking nodejs version☆17Feb 9, 2026Updated 6 months ago