SorceryIE / cfor_exploit
Exploit script for the CFOR vulnerability using Github's GraphQL API
☆16Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for cfor_exploit
- A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆17Updated last year
- recon.cloud is website that scans AWS, Azure and GCP public cloud footprint this GO tool only utilize its API for getting result to termi…☆23Updated last year
- Make better use of the embedded browser that comes by default with Burp☆38Updated 10 months ago
- Proof of conept to exploit vulnerable proxycommand configurations on ssh clients☆18Updated 11 months ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆25Updated last week
- ☆27Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆25Updated 9 months ago
- tool that generates bypasses for open redirects☆49Updated 2 years ago
- Utility for creating ZipSlip archives☆67Updated last year
- Query various sources for CVE proof-of-concepts☆49Updated last year
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆26Updated 2 months ago
- Tests for LFI in PHP apps and automates the process of leveraging LFI's to recursively download source code and discover new files via in…☆12Updated 2 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆22Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆59Updated 11 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last year
- This repository presents a proof-of-concept of CVE-2023-22527☆13Updated 9 months ago
- Java archive implant toolkit.☆53Updated 2 months ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆45Updated 11 months ago
- CVE-2024-23108: Fortinet FortiSIEM Unauthenticated 2nd Order Command Injection☆31Updated 6 months ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated 7 months ago
- CTF challenges WriteUp☆14Updated 2 years ago
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆15Updated 4 months ago
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- Tool to spray AWS Console IAM Logins☆25Updated 2 years ago
- ☆13Updated 7 months ago
- ☆26Updated 2 years ago
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆21Updated 2 months ago