Lifars / davdts
Simple Django to show post-exploitation options when server-side template injection (SSTI) is present in app using Django Templates.
☆16Updated 3 years ago
Alternatives and similar repositories for davdts:
Users that are interested in davdts are comparing it to the libraries listed below
- An MS Sharepoint and Frontpage Auditing Tool☆45Updated 3 months ago
- Custom scan profiles for use with Burp Suite Pro☆121Updated 11 months ago
- ☆31Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆74Updated last year
- ☆57Updated 10 months ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆39Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆43Updated 8 months ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆91Updated last year
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- IIS shortname scanner + bruteforce☆51Updated last year
- Extract JavaScript files from burp suite project with ease.☆87Updated 3 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆131Updated 5 months ago
- BChecks collection for Burp Suite Professional☆92Updated 8 months ago
- Downlaod all the nuclei Templates created from many Bug Hunters☆26Updated last year
- ☆46Updated last year
- ☆109Updated 2 years ago
- unleashed ffuf☆110Updated 7 months ago
- ☆33Updated 2 years ago
- ☆130Updated 3 months ago
- ☆19Updated last year
- ☆152Updated last year
- A better way of querying certificate transparency logs☆82Updated 2 months ago
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆40Updated 3 years ago
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆31Updated 10 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆133Updated 2 months ago
- ☆94Updated 3 years ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆133Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆122Updated 7 months ago
- A collection of Bug Bounty Tips collected from GitHub to all bug bounty hunters☆28Updated last year