alienwithin / Scripts-Sploits
A number of scripts POC's and problems solved as pentests move along.
☆44Updated 8 months ago
Alternatives and similar repositories for Scripts-Sploits:
Users that are interested in Scripts-Sploits are comparing it to the libraries listed below
- Python tool for expired domain discovery in crossdomain.xml files☆23Updated 8 years ago
- OWASP Skanda - SSRF Exploitation Framework☆37Updated 11 years ago
- Various tools for managing bug bounty recon and exploration.☆47Updated 2 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- A collection of scripts used to interact with the Burp Rest API☆51Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 6 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 4 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- Extension adds a new tab in Burp Suite called Extractor☆43Updated 5 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 7 years ago
- Just a silly recon tool that uses data from SSL Certificates to find potential host names☆30Updated last year
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- ☆47Updated 9 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- A collection of published exploits and proof-of-concept code.☆21Updated 7 years ago
- Scan for open S3 buckets and dump☆36Updated 6 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Updated 3 years ago
- WhiteBox CMS analysis☆69Updated last year
- XSS Payloads☆49Updated 9 years ago
- The Recon scanning tool scans websites for open files & directories specified in the custom config file. Default server configuration fil…☆15Updated 6 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Web Application Security related tools. Includes backdoors, proof of concepts and tricks☆37Updated 10 years ago
- Listing subdomains about a main domain☆58Updated 6 years ago
- Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability☆10Updated 6 years ago
- ☆23Updated 7 years ago