NorthwaveSecurity / log4jcheck
A script that checks for vulnerable Log4j (CVE-2021-44228) systems using injection of the payload in common HTTP headers.
☆127Updated 3 years ago
Alternatives and similar repositories for log4jcheck:
Users that are interested in log4jcheck are comparing it to the libraries listed below
- Scans and catches callbacks of systems that are impacted by Log4J Log4Shell vulnerability across specific headers.☆60Updated 3 years ago
- Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021-44228)☆350Updated 3 years ago
- Find vulnerable Log4j2 versions on disk and also inside Java Archive Files (Log4Shell CVE-2021-44228, CVE-2021-45046, CVE-2021-45105)☆436Updated 2 years ago
- An All-In-One Pure Python PoC for CVE-2021-44228☆177Updated 3 years ago
- Simple Python 3 script to detect the "Log4j" Java library vulnerability (CVE-2021-44228) for a list of URLs with multithreading☆196Updated 3 years ago
- A fully automated, reliable, super-fast, mass scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆399Updated 4 months ago
- Burpsuite extension for log4j2rce☆28Updated 3 years ago
- Simple local scanner for applications containing vulnerable Spring libraries☆126Updated 2 years ago
- Simple local scanner for vulnerable log4j instances☆374Updated 2 years ago
- ☆168Updated 2 months ago
- Log4Shell scanner for Burp Suite☆484Updated last year
- ☆79Updated 3 years ago
- Remote command execution vulnerability scanner for Log4j.☆254Updated last year
- A fully automated, reliable, and accurate scanner for finding Spring4Shell and Spring Cloud RCE vulnerabilities☆657Updated 3 years ago
- Spring4Shell Proof Of Concept/And vulnerable application CVE-2022-22965☆366Updated 2 years ago
- Spring Framework RCE (CVE-2022-22965) Nmap (NSE) Checker (Non-Intrusive)☆102Updated 3 years ago
- Yet another content discovery tool☆119Updated 5 months ago
- Detector for Log4Shell exploitation attempts☆732Updated 3 years ago
- Authenticated Remote Command Execution in Gitlab via GitHub import☆222Updated 2 years ago
- ☆363Updated 2 years ago
- Subcert is a subdomain enumeration tool, that finds all the subdomains from certificate transparency logs.☆80Updated 3 years ago
- Proof on Concept Exploit for CVE-2021-38647 (OMIGOD)☆233Updated 3 years ago
- A distributed nmap / masscan scanning framework complete with scan scheduling, engine pooling, subsequent scan port diff-ing, and an API …☆166Updated 3 years ago
- Text4Shell scanner for Burp Suite☆189Updated 2 years ago
- 🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks☆938Updated 3 years ago
- A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python☆197Updated 3 years ago
- PCRE RegEx matching Log4Shell CVE-2021-44228 IOC in your logs☆291Updated 3 years ago
- WSO2 RCE (CVE-2022-29464) exploit and writeup.☆372Updated 2 years ago
- ☆36Updated 3 years ago
- automated web assets enumeration & scanning [DEPRECATED]☆289Updated 2 years ago