Hex27 / mongomapLinks
A tool inspired by sqlmap specifically for MongoDB Injection
☆31Updated 5 years ago
Alternatives and similar repositories for mongomap
Users that are interested in mongomap are comparing it to the libraries listed below
Sorting:
- Werkzeug has a debug console that requires a pin. It's possible to bypass this with an LFI vulnerability or use it as a local privilege e…☆62Updated 3 years ago
- A couple of different scripts, made to automate attacks against NoSQL databases.☆66Updated last year
- Transition form local file inclusion attacks to remote code exection☆66Updated 5 years ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆73Updated 2 years ago
- ImageMagick LFI PoC [CVE-2022-44268]☆53Updated 2 years ago
- A tool to inspect and attack version 1 GUIDs☆239Updated 3 years ago
- PHP 8.1.0-dev Backdoor System Shell Script☆94Updated 4 years ago
- Content-Security-Policy (CSP) Bypass Techniques☆70Updated 5 years ago
- unleashed ffuf☆233Updated last month
- PP-finder Help you find gadget for prototype pollution exploitation☆184Updated last year
- Calculate favicon hash for SHODAN☆92Updated last year
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆253Updated last year
- Python Duo Push API☆41Updated 6 months ago
- Complex payload encoder☆238Updated last year
- ☆81Updated 5 months ago
- ☆42Updated 2 years ago
- Enumerate / Dump Docker Registry☆180Updated last year
- SSTI Payload Generator☆92Updated 3 years ago
- Phar + JPG Polyglot generator and playground (CTF CODE)☆94Updated 7 years ago
- Web Application Security Testing Tools☆250Updated last year
- FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily bui…☆171Updated 3 years ago
- several list of simple and obfuscate PHP shell☆188Updated 3 years ago
- A complete table of results of types comparison in multiple languages☆36Updated 3 years ago
- Root shell PoC for CVE-2021-3156☆71Updated 4 years ago
- ☆125Updated 3 years ago
- Custom scan profiles for use with Burp Suite Pro☆148Updated last year
- Blazing fast, advanced Padding Oracle exploit☆259Updated this week
- SMTP user enumeration via VRFY, EXPN and RCPT with clever timeout, retry and reconnect functionality.☆160Updated last year
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆151Updated last year
- A python based minimal DNS server to test/verify DNS rebinding attacks☆69Updated 2 years ago