NodyHub / zipslipper
Create tar/zip archives that try to exploit zipslip vulnerability.
☆47Updated 7 months ago
Alternatives and similar repositories for zipslipper:
Users that are interested in zipslipper are comparing it to the libraries listed below
- Additional active scan checks for BURP☆27Updated 7 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆41Updated last year
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 3 months ago
- ☆35Updated 9 months ago
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 9 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated 2 months ago
- ☆47Updated 10 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated last month
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- An Evil OIDC Server☆53Updated 2 years ago
- ☆12Updated last month
- Manage attack surface data on Elasticsearch☆22Updated last year
- A GitHub Actions Supply Chain CTF / Goat☆17Updated 3 months ago
- Find what egress ports are allowed☆42Updated 2 years ago
- ☆57Updated last year
- ☆31Updated 2 years ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegat…☆25Updated this week
- ☆17Updated 2 years ago
- Determine privileges from cloud credentials via brute-force testing.☆67Updated 8 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- A tech enumeration toolkit focused on 404 Not found pages.☆25Updated 6 months ago
- Exploits Unauth Docker API☆40Updated 2 weeks ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆21Updated 8 months ago
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆72Updated last year
- Weaponized EvilnoVNC: Scalable and semi-automated MFA-Phishing☆46Updated last month
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.☆65Updated last year
- A PoC to Simulate Ransomware Attack on AWS Environment☆31Updated 6 months ago
- ☆62Updated this week
- Collection of Semgrep rules for security analysis☆10Updated last year
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆16Updated 10 months ago