SECFORCE / sftp-exploit
OpenSSH <=6.6 SFTP misconfiguration universal exploit
☆27Updated 7 years ago
Alternatives and similar repositories for sftp-exploit:
Users that are interested in sftp-exploit are comparing it to the libraries listed below
- Discovers and exploits hosts vulnerable to MS08-067/MS17-010☆41Updated 7 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability☆10Updated 6 years ago
- Automate SSH communication with firewalls, switches, etc.☆26Updated 7 years ago
- SA-CORE-2018-004 POC #drupalgeddon3☆42Updated 7 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- an RCE (remote command execution) approach of CVE-2018-7750☆21Updated 6 years ago
- ☆47Updated 9 years ago
- ☆22Updated 8 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- A relatively flexible tool to parse mimikatz output☆35Updated 8 years ago
- Drupal 7.x Services Module Remote Code Execution Exploit - https://www.ambionics.io/blog/drupal-services-module-rce☆14Updated 8 years ago
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Updated 7 years ago
- Various tools for managing bug bounty recon and exploration.☆47Updated 2 years ago
- Pentest tool. Conviniently invoke RCE on many PostgreSQL servers in network☆16Updated 6 years ago
- A simple scanner to find and brute force tomcat manager logins☆28Updated 5 years ago
- A weaponized version of CVE-2018-9206☆62Updated 6 years ago
- A collection of Nmap NSE scripts that I made.☆27Updated 12 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 5 years ago
- Spray SMB with hashes, Then psexec☆32Updated 5 years ago
- WORK IN PROGRESS. Waits for MSF session then automatically gets domain admin☆63Updated 2 years ago
- Repo for proof of concept exploits and tools.☆56Updated 4 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- A CRLF ( Carriage Return Line Feed ) Injection attack occurs when a user manages to submit a CRLF into an application. This is most commo…☆46Updated 3 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Projects and POCs☆60Updated 10 years ago
- CVE-2017-8570 Exploit☆21Updated 7 years ago
- Example ASM code following SLAE course and exam assignments.☆36Updated 7 years ago