Ruulian / wconsole_extractor
WConsole Extractor is a python library which automatically exploits a Werkzeug development server in debug mode. You just have to write a python function that leaks a file content and you have your shell :)
☆45Updated 5 months ago
Alternatives and similar repositories for wconsole_extractor:
Users that are interested in wconsole_extractor are comparing it to the libraries listed below
- Some tips for Bug Bounty using LibreOffice☆40Updated 2 weeks ago
- Auto-Recon script that will help you in the Burp Suite Certified Practitioner Examor with any web-security lab.☆46Updated 7 months ago
- This tool allows to automatically test for Content Security Policy bypass payloads.☆40Updated 5 months ago
- A python module to explore the object tree to extract paths to interesting objects in memory.☆88Updated 3 weeks ago
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.☆145Updated last week
- By using its cutting edge technology (lolnope), you can now have a persistent multi reverse pty handler!☆88Updated 3 months ago
- Interact with Hackthebox using your terminal - Be faster and more competitive !☆97Updated last week
- Offensive Web is a documentation website about security research, difficult concepts, bypass and new exploitation techniques.☆24Updated 2 months ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆69Updated 11 months ago
- SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions…☆63Updated 4 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆133Updated 2 months ago
- POC for CVE-2021-41091☆65Updated last year
- Styx is an cross-platform GUI interface for HackTheBox made in GoLang☆23Updated 6 months ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆67Updated 11 months ago
- A Burp extension to help pentesters copy requests / responses for reports.☆38Updated last month
- A cheatsheet for NetExec☆95Updated 2 weeks ago
- Drupalwned is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆39Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆122Updated 7 months ago
- ☆79Updated 7 months ago
- A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.☆31Updated 3 months ago
- PP-finder Help you find gadget for prototype pollution exploitation☆151Updated 6 months ago
- The Search Engine for Cybersecurity☆72Updated 4 months ago
- Lab used for workshop and CTF☆172Updated 2 weeks ago
- ☆72Updated 4 months ago
- ☆57Updated 10 months ago
- ☆13Updated last year
- ☆88Updated last week
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆104Updated last month
- Enumerate / Dump Docker Registry☆168Updated 10 months ago