andresriancho / nimbostratus-target
This repository holds a target infrastructure you can use for running the nimbostratus tools.
☆23Updated 10 years ago
Alternatives and similar repositories for nimbostratus-target:
Users that are interested in nimbostratus-target are comparing it to the libraries listed below
- OAuth Security Cheatsheet☆39Updated 10 years ago
- NMAP NSE script that scans for http(s) server, takes a screenshot of them, and organizes the results into an HTML report.☆27Updated 10 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 7 years ago
- A tool to evaluate Content Security Policies.☆70Updated 4 years ago
- ☆29Updated 6 years ago
- Burp Suite plugin that allow to deserialize Java objects and convert them in an XML format. Unpack also gzip responses. Based on BurpJDSe…☆20Updated last year
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- Overview about existing tools that can be useful for AWS auditing purposes.☆15Updated 7 years ago
- List of special metadata IPs used in cloud services☆11Updated 5 years ago
- A collection of slides, videos, and proof-of-concept scripts from various Rhino presentations.☆38Updated 6 years ago
- Scan for open S3 buckets and dump☆36Updated 7 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago
- Nashorn Post Exploitation☆32Updated 7 years ago
- This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation. Works great with XSSHunter☆20Updated 8 years ago
- A simple remote scanner for Liferay Portal☆18Updated 2 years ago
- ☆25Updated 3 years ago
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 11 years ago
- Slides from my AD Privesc talk at WAHCKon 2017☆16Updated 7 years ago
- CVE-2018-18368 SEP Manager EoP Exploit☆17Updated 5 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- Scan for and exploit Consul agents☆40Updated 5 years ago
- A proof of concept for delivering webbugs via AWS lambda☆43Updated 6 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 6 years ago
- Burp Suite Professional extension in Java for Tabnabbing attack☆13Updated 6 years ago
- Scripts that I've written that others may find useful☆14Updated 2 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 11 years ago
- Check for .net padding oracle patch☆19Updated 6 years ago
- Zone transfers for rwhois☆20Updated 6 years ago
- A number of scripts POC's and problems solved as pentests move along.☆44Updated 9 months ago