XiphosResearch / phuzzLinks
Find exploitable PHP files by parameter fuzzing and function call tracing
☆72Updated 9 years ago
Alternatives and similar repositories for phuzz
Users that are interested in phuzz are comparing it to the libraries listed below
Sorting:
- WhiteBox CMS analysis☆69Updated 2 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 13 years ago
- Helper scripts to assist penetration testing and exploit development☆35Updated last year
- A threaded, recursive, web directory brute-force scanner over HTTP/2.☆36Updated 5 years ago
- Automatically parses and attacks BloodHound-generated graphs☆43Updated 7 years ago
- Screenshot Shenanigans☆26Updated 8 years ago
- WORK IN PROGRESS. Waits for MSF session then automatically gets domain admin☆64Updated 3 years ago
- A rudimentary remote desktop tool for the X11 protocol exploiting unauthenticated x11 sessions☆82Updated 8 years ago
- Network based protocol fuzzer☆74Updated 3 years ago
- Stækka Metasploit - Extenting Metasploit☆54Updated 8 years ago
- Async'ly gather unique usernames thru null SMB sessions and bruteforce them with 2 passwords☆51Updated 8 years ago
- Web Filter External Enumeration Tool (WebFEET)☆78Updated 11 years ago
- SharePoint scanner and fingerprinter based on WPScan☆25Updated 12 years ago
- Post-exploitation scripts for OS X persistence and privesc☆73Updated 8 years ago
- Collection of exploits/POC for PrestaShop cookie vulnerabilities (CVE-2018-13784)☆48Updated 7 years ago
- Pentest Scripts for Apache Vulnerabilities☆30Updated 8 years ago
- Tool for check the cookie flag in multiple sites☆28Updated 10 years ago
- This script generate backdoor code which log username password of an user who have passed HTTP basic auth using LDAP credentials.☆59Updated 8 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 7 years ago
- [DEPRECATED] Kadabra is my automatic LFI Exploiter and Scanner, written in C++ and a couple extern module in Python.☆36Updated 6 years ago
- Automated Brute-Force Login Attacks Against EAP Networks.☆58Updated 5 years ago
- a collection of payloads for common webapps☆72Updated 12 years ago
- patched information leak leaking full names associated with some email addresses including but not limited to gmail☆37Updated 4 years ago
- Generic Command Exploitation Engine for exploiting web application command-injection bugs,.☆31Updated 12 years ago
- A collection of Nmap NSE scripts that I made.☆30Updated 13 years ago
- ☆32Updated 10 years ago
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆15Updated 2 years ago
- Dumain Bruteforcer - a fast and flexible domain bruteforcer☆52Updated 7 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 5 years ago
- Kerberom is a tool aimed to retrieve ARC4-HMAC'ed encrypted Tickets Granting Service (TGS) of accounts having a Service Principal Name (S…☆36Updated 7 years ago