This is a proof-of-concept of malicious software running inside of ModSecurity WAF.
☆34Jul 24, 2025Updated 10 months ago
Alternatives and similar repositories for modsecurity-backdoor
Users that are interested in modsecurity-backdoor are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆12Jun 22, 2022Updated 3 years ago
- Golang Shlyuz Implant Implementation☆13May 23, 2025Updated last year
- Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk☆11Aug 18, 2022Updated 3 years ago
- ☆29May 16, 2023Updated 3 years ago
- Linux Post-Exploitation tools wrapper☆20Mar 21, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Disable PPL via custom driver and dump lsass☆15Mar 13, 2021Updated 5 years ago
- Grab unsaved Notepad contents with a Beacon Object File☆11Jun 19, 2022Updated 3 years ago
- A LAPS dumper written using the impacket library.☆32May 22, 2023Updated 3 years ago
- x86_64 LKM linux rootkit☆16Jul 1, 2023Updated 2 years ago
- JSON Web Token Authentication plugin for OctoberCMS.☆14Oct 18, 2018Updated 7 years ago
- A small go harness that uses Ollama to orchestrate LLMs in a restricted process flow☆18Sep 10, 2024Updated last year
- An authentication bypass using an alternate path or channel in Fortinet product☆14Oct 27, 2022Updated 3 years ago
- Fork of ligolo-ng with exec and service capability☆16Oct 30, 2023Updated 2 years ago
- Exploits for a heap overflow in MiniDLNA <=1.3.2 (CVE-2023-33476)☆19Jun 20, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A SOCKS proxy for Citrix.☆101Dec 8, 2022Updated 3 years ago
- Nemo - An offensive Remote Access Tool & Post-Exploitation Framework (WIP).☆14Apr 25, 2023Updated 3 years ago
- NMAP NSE script that scans for http(s) server, takes a screenshot of them, and organizes the results into an HTML report.☆27Sep 20, 2014Updated 11 years ago
- A central place to store statically compiled tools I use when auditing a Linux based device.☆14Sep 28, 2020Updated 5 years ago
- Decrypt encrypted SonicOSX firmware images☆21Feb 24, 2025Updated last year
- Dump Linux keyrings☆24Jul 15, 2024Updated last year
- NodeJS command-line utility to lint project file paths.☆13Jul 18, 2023Updated 2 years ago
- for intigriti web challenges☆16Apr 11, 2023Updated 3 years ago
- a tools for erp penetration testing☆16Dec 26, 2019Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆17Jun 13, 2022Updated 3 years ago
- Labs from our workshop "Demystifying the server-side".☆17May 30, 2022Updated 4 years ago
- Inf0rm3r - A Linux Info & Ssytem Enumeration Script☆12Aug 2, 2013Updated 12 years ago
- ☆43Jan 12, 2022Updated 4 years ago
- A shell script that mimics sudo and sends you back the password☆44Feb 2, 2023Updated 3 years ago
- Source code of WeLeakInfo.☆10Jul 31, 2020Updated 5 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆110Oct 10, 2020Updated 5 years ago
- ☆10Jun 25, 2022Updated 3 years ago
- LPE of CVE-2024-26230☆24Sep 1, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Try harder to bypass that WAF...☆14Jan 4, 2015Updated 11 years ago
- ☆20Nov 5, 2025Updated 7 months ago
- ☆12Oct 21, 2020Updated 5 years ago
- POC for DLL Proxying / Hijacking☆63May 26, 2025Updated last year
- 🦊A cloudflare DNS over HTTPs resolver client library.☆12Jan 10, 2023Updated 3 years ago
- A ImHex plugin to ask the almighty Oracle (OpenAI's Davinci AI) for help identifying file formats☆19Dec 4, 2022Updated 3 years ago
- CATSO/JCL wrapper for z/OS FTP logic attack☆26Feb 18, 2025Updated last year