alienwithin / Scripts-Sploits
A number of scripts POC's and problems solved as pentests move along.
☆44Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for Scripts-Sploits
- Various tools for managing bug bounty recon and exploration.☆46Updated last year
- Python tool for expired domain discovery in crossdomain.xml files☆22Updated 7 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 5 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 5 years ago
- OWASP Skanda - SSRF Exploitation Framework☆36Updated 11 years ago
- PHP tool to test XSS☆23Updated 5 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Burp Suite plugin that allow to deserialize Java objects and convert them in an XML format. Unpack also gzip responses. Based on BurpJDSe…☆20Updated 9 months ago
- This is sample code to demonstrate how one can use SQL Injection vulnerability to download local file from server in specific condition. …☆44Updated 7 years ago
- A collection of scripts used to interact with the Burp Rest API☆51Updated 5 years ago
- Advanced XPath Injection Tool☆32Updated 9 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 7 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 4 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- Simple XXE test suite generated specifically for SAML interfaces☆22Updated 6 years ago
- WhiteBox CMS analysis☆68Updated last year
- Script to parse multiple Nmap .gnmap exports into various plain-text formats for easy analysis.☆23Updated 10 years ago
- Collection of tools for privesc on Linux☆33Updated 11 years ago
- ☆35Updated 4 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 6 years ago
- Scan for open S3 buckets and dump☆35Updated 6 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- ☆29Updated 6 years ago
- My IDA scripts, tips and testing techniques for Thick Client applications.☆17Updated 10 years ago
- Ease-of-use extension for Web Application penetration testing☆18Updated 7 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 11 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 7 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago