NodeJS File Write to RCE on a read-only filesystem using a ROP chain in libuv
☆38Oct 13, 2024Updated last year
Alternatives and similar repositories for nodejs-file-write-rce
Users that are interested in nodejs-file-write-rce are comparing it to the libraries listed below
Sorting:
- JSPHorse Project Backup☆27Jan 17, 2022Updated 4 years ago
- A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132☆17Jun 22, 2025Updated 8 months ago
- Java bytecode line number restoration tool☆134Aug 31, 2025Updated 6 months ago
- Clickme is a powerful multi-step clickjacking tool designed for security professionals. Create, visualize, and demonstrate complex clickj…☆14Sep 4, 2025Updated 5 months ago
- ☆11May 25, 2024Updated last year
- PoC of Spring AMQP Deserialization Vulnerability (CVE-2023-34050)☆13Jan 29, 2024Updated 2 years ago
- ☆14Dec 22, 2020Updated 5 years ago
- Attack & Defense CTF dashboard☆16Oct 7, 2021Updated 4 years ago
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆221Jun 8, 2024Updated last year
- ☆17May 10, 2021Updated 4 years ago
- ☆21Sep 12, 2025Updated 5 months ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆46Jul 29, 2024Updated last year
- 一个基于 Vineflower 引擎的多线程 Java 批量反编译工具,支持快速处理大量的 class 文件和 JAR 文件。☆58Apr 28, 2025Updated 10 months ago
- ☆16Mar 26, 2024Updated last year
- CTF Challenge☆18Nov 20, 2020Updated 5 years ago
- 一款基于James Forshaw的.NET Remoting反序列化工具升级版在TypeFilterLevel.Low模式无文件payload任意代码执行poc的开发心得☆48Jan 23, 2025Updated last year
- Exploit for CVE-2024-29847☆18Sep 15, 2024Updated last year
- A tool to download program information from Bugcrowd, for use by researchers to compare programs they are eligible to participate in☆21Dec 22, 2022Updated 3 years ago
- ☆20Sep 8, 2023Updated 2 years ago
- ☆93Aug 26, 2025Updated 6 months ago
- ☆44Feb 11, 2022Updated 4 years ago
- CVE-2025-49844 (RediShell)☆326Oct 7, 2025Updated 4 months ago
- 利用sudo提权,只针对cnetos7☆29Nov 3, 2022Updated 3 years ago
- ☆24Nov 19, 2024Updated last year
- ☆55Dec 29, 2021Updated 4 years ago
- A collection of pyjails!☆28Dec 15, 2025Updated 2 months ago
- WinDbg script to spoof origin and url of a renderer process in Chrome☆25Dec 2, 2020Updated 5 years ago
- JDK CVE-2023-21939☆94Aug 26, 2023Updated 2 years ago
- [ALL IN ONE] Everything that I shared to public about Cloud Security is here.☆60Apr 19, 2025Updated 10 months ago
- dotnet 反序列化学习笔记☆513Oct 19, 2023Updated 2 years ago
- 红队信息收集工具☆26Jul 5, 2025Updated 7 months ago
- PoC for leaking text nodes via CSS injection☆25Jul 27, 2024Updated last year
- CVE-2022-37042 Zimbra Auth Bypass leads to RCE☆30Dec 9, 2022Updated 3 years ago
- JDBC Attack Tricks☆154Sep 3, 2023Updated 2 years ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications (Official BApp Extension Available)☆247Nov 4, 2025Updated 3 months ago
- Copy as XMLHttpRequest BurpSuite extension☆32Mar 29, 2021Updated 4 years ago
- Automate the process of an S3 bucket subdomain takeover via dangling CNAME record☆26May 20, 2024Updated last year
- 自动化检测 Swagger API 接口未授权访问漏洞工具☆60Mar 10, 2025Updated 11 months ago
- PoC for CVE-2021-43557☆22Nov 22, 2021Updated 4 years ago