PlayExploits / CTF-S----challenges-pico-htb-ringzer0-etc
This is the ringzer0 writeup of web exploitation catagery. The name is "Word mean something"
☆14Updated last year
Alternatives and similar repositories for CTF-S----challenges-pico-htb-ringzer0-etc
Users that are interested in CTF-S----challenges-pico-htb-ringzer0-etc are comparing it to the libraries listed below
Sorting:
- Exploits with pwntools library in Python3. ROP, BOF, SHELLCODE.☆20Updated last year
- Wordpress Plugin Canto < 3.0.5 - Remote File Inclusion (RFI) and Remote Code Execution (RCE)☆12Updated last year
- Auto exploitation tool for CVE-2024-24401.☆34Updated 8 months ago
- ☆7Updated last year
- Burp extension to track your current IP address. Extension focused for red teams where the attacker needs to log all used IP addresses.☆25Updated last year
- bypassing the twitter safety link firewall :)☆11Updated last week
- POC for CVE-2024-40348. Will attempt to read /etc/passwd from target☆30Updated 9 months ago
- Nuclei template for CVE-2024-23897 (Jenkins LFI Vulnerability)☆18Updated last year
- A graphical automation to monitor if backdoors/default settings are still active on the compromised machines over time.☆44Updated last year
- CVE-2023-6063 (WP Fastest Cache < 1.2.2 - UnAuth SQL Injection)☆29Updated last year
- Burp extension used to snip any header from all the requests.☆22Updated last year
- ☆35Updated last year
- There were no proper POCs for CVE-2023-30533 so I made one. (Reported by Vsevolod Kokorin)☆9Updated last year
- CVE-2024-4879 - Jelly Template Injection Vulnerability in ServiceNow☆24Updated 10 months ago
- PrestaXSRF is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆31Updated last year
- An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.☆15Updated 11 months ago
- A demo exploit for CVE-2021-44026, a SQL injection in Roundcube☆12Updated last year
- This project explores secure remote access using Metasploit's reverse TCP payloads. Ethically and responsibly, we showcase potential risk…☆30Updated last year
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆29Updated 9 months ago
- Enumerate SSN (System Service Numbers or Syscall ID) and syscall instruction address in ntdll module by parsing the PEB of the current pr…☆21Updated last year
- backdoor exploit for vsftpd 2.3.4 on python☆15Updated last year
- ☆13Updated last year
- ☆14Updated last month
- POC for CVE-2024-3183 (FreeIPA Rosting)☆21Updated 8 months ago
- aiohttp LFI (CVE-2024-23334)☆27Updated last year
- Fast Path Traversal exploitation tool☆21Updated last year
- CVE-2024-34102: Unauthenticated Magento XXE☆14Updated 4 months ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆23Updated 2 years ago
- CVE-2024-29895 PoC - Exploiting remote command execution in Cacti servers using the 1.3.X DEV branch builds☆21Updated last year
- DLink DIR-846 Authenticated Remote Code Execution☆18Updated last year