aapooksman / writeupsLinks
☆12Updated 2 years ago
Alternatives and similar repositories for writeups
Users that are interested in writeups are comparing it to the libraries listed below
Sorting:
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
- A curated list of argument injection vectors☆41Updated last year
- ☆31Updated 3 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆21Updated 10 months ago
- This Chromium extensions aims at supporting the analysis of single sign-on implementations, by offering semi-automated analysis and attac…☆29Updated 2 years ago
- An Evil OIDC Server☆54Updated 3 years ago
- Tool to spray AWS Console IAM Logins☆35Updated 3 years ago
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- CVE-2025-49844 – Redis Lua Parser Use-After-Free☆63Updated 3 months ago
- Automated privilege escalation of the world's most popular Docker images.☆69Updated 2 years ago
- Find CVE PoCs on GitHub☆158Updated 6 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated 2 months ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated last year
- Java archive implant toolkit.☆61Updated 9 months ago
- ☆116Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆36Updated 10 months ago
- Determine privileges from cloud credentials via brute-force testing.☆67Updated last year
- An extension to use Semgrep inside Burp Suite.☆89Updated 8 months ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆48Updated this week
- One line command and control backdoors for APIs and web applications.☆51Updated last year
- Jenkins Security Research or Hacking Jenkins ;)☆12Updated last year
- Security Advisories☆35Updated 3 months ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆68Updated last year
- My talks...☆25Updated 11 months ago
- Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based …☆105Updated 6 months ago
- an Evil Java RMI Registry.☆51Updated 2 years ago
- a deterministic finite automata ranker☆73Updated 3 years ago
- Make better use of the embedded browser that comes by default with Burp☆44Updated 2 years ago
- Target practice for ffuf☆69Updated 4 years ago