Hex27 / mongomap
A tool inspired by sqlmap specifically for MongoDB Injection
☆30Updated 4 years ago
Alternatives and similar repositories for mongomap
Users that are interested in mongomap are comparing it to the libraries listed below
Sorting:
- Werkzeug has a debug console that requires a pin. It's possible to bypass this with an LFI vulnerability or use it as a local privilege e…☆57Updated 2 years ago
- A couple of different scripts, made to automate attacks against NoSQL databases.☆63Updated last year
- Transition form local file inclusion attacks to remote code exection☆60Updated 4 years ago
- Phar + JPG Polyglot generator and playground (CTF CODE)☆89Updated 6 years ago
- Python Duo Push API☆35Updated last month
- ☆60Updated 2 months ago
- Identify virtual hosts by similarity comparison☆121Updated 9 months ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆66Updated 2 years ago
- Custom scan profiles for use with Burp Suite Pro☆143Updated last year
- An MS Sharepoint and Frontpage Auditing Tool☆49Updated 5 months ago
- Apache Tomcat exploit and Pentesting guide for penetration tester☆59Updated 2 years ago
- ☆39Updated last year
- Burp Extension that copies a request and builds a FFUF skeleton☆111Updated last year
- ImageMagick LFI PoC [CVE-2022-44268]☆52Updated last year
- Calculate favicon hash for SHODAN☆82Updated 7 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆134Updated 5 months ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆84Updated last week
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- Apache HTTP Server Vulnerability Testing Tool | PoC for CVE-2024-38472 , CVE-2024-39573 , CVE-2024-38477 , CVE-2024-38476 , CVE-2024-3847…☆92Updated 7 months ago
- Tool to enable blind sql injection attacks against websockets using sqlmap☆60Updated 2 weeks ago
- Formatify is a Burp Suite extension that instantly converts HTTP requests into multiple formats like cURL, Python, PowerShell, and more—s…☆22Updated last week
- ☆63Updated last year
- Content-Security-Policy (CSP) Bypass Techniques☆63Updated 4 years ago
- ☆59Updated 3 years ago
- Root shell PoC for CVE-2021-3156☆66Updated 4 years ago
- Aspx reverse shell☆106Updated 5 years ago
- Enumerate / Dump Docker Registry☆175Updated last year
- WConsole Extractor is a python library which automatically exploits a Werkzeug development server in debug mode. You just have to write a…☆53Updated 8 months ago
- Extract JavaScript files from burp suite project with ease.☆89Updated 3 years ago
- Dump files via Directory Traversal, LFI, Arbitrary File Read in a breeze with the help of ffuf☆18Updated last year