Penultimate / challengesLinks
Security challenges and CTFs created by the Penultimate team.
☆13Updated 7 years ago
Alternatives and similar repositories for challenges
Users that are interested in challenges are comparing it to the libraries listed below
Sorting:
- ☆71Updated 7 years ago
- Highlight Burp proxy requests made by different browsers☆29Updated 8 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆89Updated 7 years ago
- Allows you to trace where inputs are reflected back to the user.☆37Updated 7 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 8 years ago
- Burplay is a Burp Extension allowing for replaying any number of requests using same modifications definition. Its main purpose is to aid…☆83Updated 8 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- Chrome < 62 uxss exploit (CVE-2017-5124)☆161Updated 7 years ago
- Scripts and auxiliary files for fuzzing PHP's unserialize function☆45Updated 8 years ago
- cve-2014-0130 rails directory traversal vuln☆19Updated 8 years ago
- This repository contains the POC of an exploit for node-jose < 0.11.0☆25Updated 2 years ago
- XXE vulnerability demo☆22Updated 11 years ago
- "What To" guide for finding vulnerabilities in sites.☆21Updated 8 years ago
- Everything you need to exploit overly permissive crossdomain.xml files☆86Updated 10 years ago
- Various tools for managing bug bounty recon and exploration.☆48Updated 2 years ago
- Modified patch of https://github.com/Naituw/HackingFacebook/ and https://github.com/Naituw/IPAPatch/☆48Updated 8 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 7 years ago
- CTF Write-ups☆26Updated 6 years ago
- ☆35Updated 8 months ago
- Demo server for testing Java deserialization payloads☆15Updated 9 years ago
- ☆34Updated 6 years ago
- ☆162Updated 7 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing in a comfortable way!☆103Updated 7 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 7 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 9 years ago
- ☆86Updated 8 years ago
- Tool for CVE-2018-16323☆81Updated 6 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated last year
- This test suite contains over 40 different test cases that have proven to work with different mobile browsers in my research or testing S…☆30Updated 6 years ago
- Exploitation challenges for CTF☆63Updated 7 years ago