aadityapurani / NodeJS-Red-Team-Cheat-SheetLinks
NodeJS Red-Team Cheat Sheet
☆220Updated 6 years ago
Alternatives and similar repositories for NodeJS-Red-Team-Cheat-Sheet
Users that are interested in NodeJS-Red-Team-Cheat-Sheet are comparing it to the libraries listed below
Sorting:
- That repository contains my updates to the well know java deserialization exploitation tool ysoserial.☆183Updated 3 years ago
- ☆165Updated 5 years ago
- A python based blind SQL injection exploitation script☆140Updated 5 years ago
- A pentesting tool that dumps the source code from .git even when the directory traversal is disabled☆227Updated 3 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- Stuff done in preparation for AWAE course and OSWE certification☆152Updated 5 years ago
- Python exploit for the CVE-2021-22204 vulnerability in Exiftool☆94Updated 4 years ago
- A simple web app with a XXE vulnerability.☆229Updated 3 years ago
- Preparation for OSWE☆45Updated 5 years ago
- Damn Vulnerable Thick Client App developed in C# .NET☆163Updated 2 years ago
- Using this script, you can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications.☆172Updated 5 years ago
- Workshop given at Hack in Paris 2019☆124Updated 2 years ago
- Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.☆273Updated 9 months ago
- ☆132Updated 4 years ago
- This repo contains all the injections mentioned in my talk and enumerators.☆130Updated last year
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆112Updated last year
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆262Updated 3 years ago
- Security Testing Scripts for JWT☆322Updated 3 years ago
- Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)☆178Updated 4 years ago
- Phar + JPG Polyglot generator and playground (CTF CODE)☆94Updated 6 years ago
- Burp Bounty profiles compilation, feel free to contribute!☆148Updated 4 years ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆140Updated 6 years ago
- Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution☆75Updated 4 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆128Updated 2 years ago
- Common Web Managers Fuzz Wordlists☆175Updated 2 months ago
- This repository will contain all trainings and tutorials I have done/read to prepare for OSWE / AWAE.☆240Updated 6 years ago
- LFI Payloads List coolected from github repos☆85Updated 5 years ago
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆361Updated 3 years ago
- List DTDs and generate XXE payloads using those local DTDs.☆640Updated last year
- RCE on Kibana versions before 5.6.15 and 6.6.0 in the Timelion visualizer☆56Updated 5 years ago