A malicious LDAP server for JNDI injection attacks
☆76Nov 15, 2024Updated last year
Alternatives and similar repositories for rogue-jndi
Users that are interested in rogue-jndi are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities☆447Sep 7, 2022Updated 3 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆110Oct 10, 2020Updated 5 years ago
- ☆24Oct 18, 2022Updated 3 years ago
- ☆17Aug 3, 2021Updated 4 years ago
- List DTDs and generate XXE payloads using those local DTDs.☆655Feb 21, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Proof of concept communications from C# via a web browser process☆21Feb 15, 2019Updated 7 years ago
- Place for random PoCs☆18May 21, 2020Updated 5 years ago
- attackRmi☆258Oct 14, 2020Updated 5 years ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆27May 8, 2024Updated last year
- ☆282Nov 12, 2021Updated 4 years ago
- ☆14Jul 13, 2020Updated 5 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆612Mar 4, 2021Updated 5 years ago
- RCE in NPM VSCode Extension☆20Apr 11, 2021Updated 5 years ago
- DupeKeyInjector☆134Apr 16, 2022Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Apache Solr Injection Research☆581Jan 28, 2020Updated 6 years ago
- ☆72Mar 26, 2022Updated 4 years ago
- Some of my public exploits☆52Sep 15, 2020Updated 5 years ago
- MySQL JDBC Deserialization Payload / MySQL客户端jdbc反序列化漏洞payload☆13Feb 8, 2020Updated 6 years ago
- Collection of different exploitation scenarios of JWT.☆21Jul 23, 2021Updated 4 years ago
- CodeQL database manager☆49Apr 16, 2025Updated 11 months ago
- File system enumerator and monitor for Android and Ubuntu.☆17Sep 25, 2021Updated 4 years ago
- Remote code execution in Power Platform connectors via JSON deserialization☆23Mar 30, 2023Updated 3 years ago
- DNS rebinding toolkit☆253May 22, 2023Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆153Jun 24, 2019Updated 6 years ago
- This repository includes a set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard cer…☆294Updated this week
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Feb 20, 2020Updated 6 years ago
- Extracts subdomains from a specified domain using https://recon.dev.☆16Sep 12, 2020Updated 5 years ago
- bypass JEP290 RaspHook code☆63Sep 21, 2020Updated 5 years ago
- ☆34May 4, 2022Updated 3 years ago
- PostMessage extension☆102Aug 28, 2019Updated 6 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆348Nov 20, 2022Updated 3 years ago
- shouganaiyo-loader is a cross-platform Frida-based Node.js command-line tool that forces Java processes to load a Java/JVMTI agent regard…☆39Dec 30, 2021Updated 4 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Generate users list using certain format☆23Jan 23, 2019Updated 7 years ago
- Attempt to connect to and dump all tables within a ServiceNow instance.☆20Jul 4, 2023Updated 2 years ago
- research☆152Mar 21, 2024Updated 2 years ago
- Cobalt Strike BOF for quser.exe implementation using Windows API☆87Mar 22, 2023Updated 3 years ago
- websocket-connection-smuggler☆66Jan 22, 2020Updated 6 years ago
- HTML5 WebSocket message fuzzer☆147Nov 23, 2018Updated 7 years ago
- PoC for CVE-2020-6287, CVE-2020-6286 (SAP RECON vulnerability)☆225Sep 29, 2020Updated 5 years ago