PortSwigger / serialization-examplesLinks
☆42Updated last year
Alternatives and similar repositories for serialization-examples
Users that are interested in serialization-examples are comparing it to the libraries listed below
Sorting:
- LFI to RCE via phpinfo() assistance or via controlled log file☆69Updated 2 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- Wordlist to bruteforce for LFI☆125Updated 5 years ago
- NotSoCereal: A Deserialization exploit playground☆53Updated 3 years ago
- Workshop given at Hack in Paris 2019☆123Updated 2 years ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆108Updated last year
- An MS Sharepoint and Frontpage Auditing Tool☆53Updated 9 months ago
- Preparation for OSWE☆44Updated 5 years ago
- Prototype Pollution Scanner☆127Updated 4 years ago
- Phar + JPG Polyglot generator and playground (CTF CODE)☆94Updated 6 years ago
- Vulnerable SAML infrastructure training applicaiton☆53Updated 2 years ago
- ☆39Updated 2 years ago
- BurpSuite using the document and some extensions☆70Updated 5 years ago
- Burp Extension that copies a request and builds a FFUF skeleton☆111Updated last year
- Transition form local file inclusion attacks to remote code exection☆64Updated 5 years ago
- LFI Payloads List coolected from github repos☆82Updated 5 years ago
- ☆34Updated 3 years ago
- Werkzeug has a debug console that requires a pin. It's possible to bypass this with an LFI vulnerability or use it as a local privilege e…☆61Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- HTTP verb tampering & methods enumeration☆62Updated last month
- Tool to enable blind sql injection attacks against websockets using sqlmap☆66Updated 4 months ago
- A simple remote scanner for Atlassian Jira☆121Updated 2 years ago
- Dockerized labs For Web Expert (OSWE) certification. Preparation for coming AWAE Training ...☆111Updated 4 years ago
- Damn Vulnerable Thick Client App developed in C# .NET☆157Updated 2 years ago
- Cheat sheet☆36Updated 5 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 5 years ago
- Python exploit for the CVE-2021-22204 vulnerability in Exiftool☆95Updated 4 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆74Updated 2 years ago
- Exploits targeting Symfony☆208Updated 11 months ago
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated last year