adamdoupe / enemy-of-the-state
This novel black-box web vulnerability scanner attempts to infer the state machine of the web application.
☆19Updated 4 years ago
Alternatives and similar repositories for enemy-of-the-state:
Users that are interested in enemy-of-the-state are comparing it to the libraries listed below
- This is the repository for JÄk. I created it as prototype during my masterthesis.☆30Updated 6 years ago
- ☆15Updated 4 years ago
- Joern Workshops☆25Updated this week
- ☆22Updated 7 years ago
- Symbolic execution inspired PHP application scanner for code-path discovery☆30Updated 5 years ago
- CVE-2019-6467 (BIND nxdomain-redirect)☆26Updated 5 years ago
- Result files from various fuzzing runs☆16Updated 3 years ago
- Source code for ACM CCS 2020 Paper PMForce: Systematically Analyzing postMessage Handlers at Scale☆17Updated 3 years ago
- Dockerfile for AFL++ and helpful other tools☆21Updated 4 years ago
- Exploit generator and Taint Engine to find persistent (and reflected) client-side XSS☆25Updated 4 years ago
- CFG and scripts for fuzzing the PHP interpreter with Domato☆28Updated 5 years ago
- ☆20Updated 8 years ago
- ☆11Updated 2 years ago
- PoC for CVE-2019-10207☆19Updated 2 years ago
- RCE in Slanger using deserialization of Ruby objects☆11Updated 5 years ago
- ☆12Updated 4 years ago
- Conference Papers and Appendicies (USENIX Security, BlackHat, HITBSecConf, and BeVX)☆26Updated last year
- Exploit code for CVE-2019-11707 on Firefox 66.0.3 running on Ubuntu☆42Updated 5 years ago
- PoCs discovered through fuzzing which resulted in a CVE assignment.☆18Updated 4 years ago
- Bytecode based Fuzzer for the PHP language☆11Updated 4 years ago
- Default query sets for Joern☆26Updated 3 years ago
- Write-ups for various CTF challenges solved by the team☆15Updated 7 years ago
- Parser utility to generate ASTs from PHP source code suitable to be processed by Joern.☆16Updated 5 years ago
- Seed Corpus for clamav-devel oss-fuzz integration.☆32Updated 5 years ago
- ☆26Updated 6 years ago
- Simple FTP fuzzer to demonstrate boofuzz usage.☆28Updated 3 years ago
- Example of passing file descriptors into a container to perform a privilege escalation on the host☆23Updated 4 years ago
- z3 scripts and ctf challenge solutions.☆24Updated 2 years ago