Leovalcante / spring4shell
Spring4Shell RCE exploit
☆13Updated 2 years ago
Alternatives and similar repositories for spring4shell:
Users that are interested in spring4shell are comparing it to the libraries listed below
- A Python based ingestor for BloodHound☆83Updated 2 years ago
- NotSoCereal: A Deserialization exploit playground☆51Updated 3 years ago
- Simple python which takes FirstName and LastName to generate possible AD Usernames. Usefull for OSCP, Labs...☆21Updated this week
- Tool to enable blind sql injection attacks against websockets using sqlmap☆58Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- ☆78Updated 6 months ago
- User enumeration and password spraying tool for testing Azure AD☆69Updated 2 years ago
- Enumerate AWS permissions and resources.☆67Updated 2 years ago
- ☆39Updated last year
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆123Updated 9 months ago
- Impacket is a collection of Python classes for working with network protocols.☆67Updated 5 months ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆69Updated 3 years ago
- Review of AWAE.OSWE☆31Updated 2 years ago
- Repository with quick triggers to help during Pentest in an Active Directory environment.☆42Updated 3 months ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆67Updated 10 months ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆62Updated 4 months ago
- ☆33Updated 2 years ago
- ☆30Updated 4 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆25Updated 2 years ago
- Upload files done during my research.☆131Updated 2 weeks ago
- ☆24Updated 3 years ago
- Traditional AD RedTeam Full Enumeration Script used to query all aspects of your target Forest.☆42Updated 7 months ago
- C2 Automation using Linode☆78Updated 2 years ago
- ☆33Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆27Updated last year
- A repository of tools developed while studying for OSEP. The contents here are not part of courseware but some tools, i wrote as an exten…☆1Updated 7 months ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆83Updated last year
- Notes for CRTP☆39Updated 4 years ago
- The great Microsoft exchange hack: A penetration tester’s guide (exchange penetration testing)☆88Updated 8 months ago
- ☆47Updated 2 years ago