SECFORCE / sftp-exploitLinks
OpenSSH <=6.6 SFTP misconfiguration universal exploit
☆27Updated 7 years ago
Alternatives and similar repositories for sftp-exploit
Users that are interested in sftp-exploit are comparing it to the libraries listed below
Sorting:
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆39Updated 7 years ago
- SA-CORE-2018-004 POC #drupalgeddon3☆42Updated 7 years ago
- Test CVE-2018-0296 and extract usernames☆106Updated 6 years ago
- A weaponized version of CVE-2018-9206☆62Updated 6 years ago
- Repo for proof of concept exploits and tools.☆56Updated 4 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 5 years ago
- ViewState Payload Generator☆26Updated 6 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 7 years ago
- an RCE (remote command execution) approach of CVE-2018-7750☆21Updated 6 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- Deploy payloads to *Nix systems en masse☆108Updated 5 years ago
- Python script to exploit CVE-2015-4852.☆30Updated 8 years ago
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 12 years ago
- A collection of scripts used to interact with the Burp Rest API☆52Updated 6 years ago
- Discovers and exploits hosts vulnerable to MS08-067/MS17-010☆41Updated 7 years ago
- public exploits☆35Updated 2 years ago
- Async'ly gather unique usernames thru null SMB sessions and bruteforce them with 2 passwords☆51Updated 7 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- A simple scanner to find and brute force tomcat manager logins☆28Updated 5 years ago
- Elasticsearch 1.4.0 < 1.4.2 Remote Code Execution exploit and vulnerable container☆33Updated 7 years ago
- Brute forcer and shell deployer for WildFly☆99Updated 7 years ago
- ☆34Updated 6 years ago
- Listing subdomains about a main domain☆59Updated 7 years ago
- Pentest tool. Conviniently invoke RCE on many PostgreSQL servers in network☆16Updated 6 years ago
- Custom THP Dropper☆26Updated 7 years ago
- WORK IN PROGRESS. Waits for MSF session then automatically gets domain admin☆64Updated 2 years ago
- scripts used in my pentest work.☆44Updated 9 years ago
- ZIP File Raider - Burp Extension for ZIP File Payload Testing☆71Updated 4 years ago