akamai-threat-research / mqtt-pwn
MQTT-PWN intends to be a one-stop-shop for IoT Broker penetration-testing and security assessment operations.
☆369Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for mqtt-pwn
- EmbedOS - Embedded security testing virtual machine☆151Updated 4 years ago
- ISF(Industrial Security Exploitation Framework) is a exploitation framework based on Python.☆247Updated 4 years ago
- the Network Protocol Fuzzer that we will want to use.☆732Updated 9 months ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆585Updated 3 years ago
- cvebase is a community-driven vulnerability data platform to discover the world's top security researchers and their latest disclosed vul…☆139Updated 3 years ago
- ☆83Updated 4 years ago
- ☆466Updated last year
- Proofs-of-concept☆764Updated 2 months ago
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!☆603Updated 5 years ago
- Set of tools for security testing of Internet of Things devices using specific network IoT protocols☆351Updated 5 months ago
- Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).☆493Updated 2 years ago
- Java RMI enumeration and attack tool.☆716Updated 7 years ago
- AttifyOS 4.0☆68Updated 6 months ago
- IoTGoat is a deliberately insecure firmware based on OpenWrt.☆180Updated 4 years ago
- A byte code analyzer for finding deserialization gadget chains in Java applications☆996Updated 3 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆345Updated 2 years ago
- The Firmware Security Testing Methodology (FSTM) is composed of nine stages tailored to enable security researchers, software developers,…☆389Updated 2 years ago
- Kerberos Exploitation Kit☆143Updated 9 years ago
- A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.☆511Updated 4 years ago
- Awesome webshell collection. Including 150 Github repo, and 200+ blog posts.☆166Updated 4 years ago
- Redis 4.x & 5.x RCE☆139Updated 5 years ago
- Burp Plugin to decrypt AES encrypted traffic on the fly☆634Updated 2 years ago
- All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities☆774Updated 3 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆289Updated last year
- CVE-2020-5902 BIG-IP☆372Updated 3 years ago
- MOGWAI LABS JMX exploitation toolkit☆197Updated last year
- Redis(<=5.0.5) RCE☆1,010Updated last year
- The great impacket example scripts compiled for Windows☆919Updated 5 years ago
- A collection of curated Java Deserialization Exploits☆590Updated 3 years ago
- Exploit for Arbitrary File Read on Pulse Secure SSL VPN (CVE-2019-11510)☆361Updated 4 years ago