Warxim / vucsaLinks
Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface) and contains multiple challenges including SQL injection, RCE, XML vulnerabilities and more.
☆99Updated 2 years ago
Alternatives and similar repositories for vucsa
Users that are interested in vucsa are comparing it to the libraries listed below
Sorting:
- A more useful CSRF PoC generator on Burp Suite☆87Updated 3 years ago
- SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.☆162Updated 2 years ago
- spring4shell | CVE-2022-22965☆23Updated 3 years ago
- Burp Suite's extension to scan and crawl Single Page Applications☆107Updated 2 years ago
- CVE-2022-41852 Proof of Concept (unofficial)☆75Updated 3 years ago
- CVE-2021-40346 PoC (HAProxy HTTP Smuggling)☆41Updated 4 years ago
- WEB API fuzzing☆23Updated 9 months ago
- nuclei scanner for proxyshell ( CVE-2021-34473 )☆46Updated 3 years ago
- D3Ext's Forward Shell☆120Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆90Updated last year
- CVE-2023-35078 Remote Unauthenticated API Access Vulnerability Exploit POC☆118Updated 2 years ago
- A Python script to exploit CVE-2022-36446 Software Package Updates RCE (Authenticated) on Webmin < 1.997.☆116Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆56Updated 2 years ago
- Spring4Shell Burp Scanner☆71Updated 3 years ago
- CVE-2021-40346 integer overflow enables http smuggling☆32Updated 4 years ago
- Confluence Hardcoded Password POC☆15Updated 3 years ago
- ☆44Updated 6 months ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆88Updated 3 years ago
- ☆65Updated 3 years ago
- A penetration testing and vulnerability management application written using the powerful django framework.☆30Updated 2 years ago
- Dockerized POC for CVE-2022-42889 Text4Shell☆76Updated 3 years ago
- Case for CVE-2022-30778☆23Updated 3 years ago
- client-side prototype pullution vulnerability scanner☆46Updated 4 years ago
- Introduction to CYS4-SensitiveDiscoverer, a Burp extension that discovers sensitive information inside HTTP messages.☆24Updated last year
- pFuzz helps us to bypass web application firewall by using different methods at the same time.☆162Updated 5 years ago
- This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform.☆119Updated 2 years ago
- A testing Red Team Infrastructure created with Docker☆32Updated 3 years ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆61Updated 2 years ago
- this repository is a docker containing some "XSS vulnerability" challenges and bypass examples.☆118Updated 3 years ago
- XMLRPC - RCE in MovableTypePoC☆21Updated 3 years ago