andresriancho / nimbostratus-target
This repository holds a target infrastructure you can use for running the nimbostratus tools.
☆23Updated 9 years ago
Alternatives and similar repositories for nimbostratus-target:
Users that are interested in nimbostratus-target are comparing it to the libraries listed below
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 7 years ago
- ☆29Updated 6 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- Summation of the OWASP Testing Guide for reference☆10Updated 7 years ago
- An AWS Lambda vulnerable application written in flask.☆48Updated 7 years ago
- Nashorn Post Exploitation☆31Updated 7 years ago
- Tool orchestrator. Specify targets and run sets of tools against them.☆19Updated 8 years ago
- NMAP NSE script that scans for http(s) server, takes a screenshot of them, and organizes the results into an HTML report.☆27Updated 10 years ago
- Scan for open S3 buckets and dump☆36Updated 6 years ago
- Pivot into private VPC networks using a VPN connection☆41Updated 5 years ago
- Python tool for expired domain discovery in crossdomain.xml files☆23Updated 8 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 11 years ago
- A number of scripts POC's and problems solved as pentests move along.☆44Updated 8 months ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 5 years ago
- A collection of slides, videos, and proof-of-concept scripts from various Rhino presentations.☆38Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- List of special metadata IPs used in cloud services☆11Updated 5 years ago
- Pentest TeamCity using Metasploit☆43Updated 4 years ago
- Zone transfers for rwhois☆20Updated 5 years ago
- Pull author and committer names and emails from Travis-CI☆11Updated 4 years ago
- Script to parse multiple Nmap .gnmap exports into various plain-text formats for easy analysis.☆23Updated 10 years ago
- Burp Suite Professional extension in Java for Tabnabbing attack☆13Updated 6 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆53Updated 4 years ago
- A vulnerability reporting database to help pentesters write consistent, easy reports.☆9Updated 9 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- A tool to analyse JMX API security level.☆43Updated 10 years ago
- ☆46Updated 7 years ago