FiloSottile / CVE-2016-2107
Simple test for the May 2016 OpenSSL padding oracle (CVE-2016-2107)
☆188Updated 6 years ago
Alternatives and similar repositories for CVE-2016-2107:
Users that are interested in CVE-2016-2107 are comparing it to the libraries listed below
- Go library and command line to seek for secrets on various sources.☆242Updated 5 years ago
- Tagging and annotation framework for scan data☆101Updated 6 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Self contained cross platform DNS recon tool☆187Updated 7 years ago
- Recon, Subdomain Bruting, Zone Transfers☆228Updated 8 years ago
- A Burp Plugin for Detecting Weaknesses in Content Security Policies☆165Updated last year
- proxy poc implementation of STARTTLS stripping attacks☆167Updated 3 years ago
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆157Updated 6 years ago
- Deprecated please use https://github.com/Netflix/sleepy-puppy☆94Updated 6 years ago
- Mass scanner for the Java serialize bug☆151Updated 6 years ago
- Shodan HQ nmap plugin - passively scan targets☆152Updated 9 years ago
- Wolves Among the Sheep☆147Updated last year
- An easy-to-deploy virtual machine that can provide flexible man-in-the-middle capabilities.☆196Updated 8 years ago
- A regex based source code scanner.☆129Updated 7 years ago
- Minion☆354Updated 5 years ago
- Authenticate against a MySQL server without knowing the cleartext password☆226Updated 2 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆113Updated 4 years ago
- The NoSQL Honeypot Framework☆102Updated last year
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆141Updated 7 years ago
- User, contributor and developer friendly vulnerability database☆129Updated 6 years ago
- WAF Research☆180Updated 2 years ago
- vcsmap is a plugin-based tool to scan public version control systems for sensitive information.☆137Updated 3 years ago
- Honeypot deployment made easy☆235Updated 6 years ago
- [depreciated] Terminal dashboard for bug bounty hunters that use HackerOne and Bugcrowd☆191Updated 8 years ago
- Proof-of-concept JavaScript malware implemented as a Proxy Auto-Configuration (PAC) File☆159Updated 8 years ago
- Neet - Network Enumeration and Exploitation Tool☆167Updated 8 years ago
- ☆146Updated 4 years ago
- ☆74Updated 11 years ago
- Material related to my talks at various conferences on using Continuous Integration tools (Jenkins, Teamcity, Go, Hudson, CruiseControl) …☆119Updated 8 years ago
- use ambiguous HTTP to circumvent security systems☆94Updated last year