brandonprry / vulnerable_xxe
A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.
☆26Updated 11 years ago
Alternatives and similar repositories for vulnerable_xxe:
Users that are interested in vulnerable_xxe are comparing it to the libraries listed below
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Updated 6 years ago
- PHDAYS |||☆17Updated 11 years ago
- Mimikatz HashClash☆12Updated 9 years ago
- ☆19Updated 7 years ago
- A Pythonic wrapper to MassDNS☆24Updated 6 years ago
- CVE-2017-8570 Exploit☆21Updated 7 years ago
- Spray SMB with hashes, Then psexec☆32Updated 5 years ago
- Issues to consider when planning a red team exercise.☆14Updated 7 years ago
- Office 365 MFA capture toolkit☆12Updated 7 years ago
- A simple grep user interface for searching code which can be used for SAST.☆8Updated 5 years ago
- ☆9Updated 7 years ago
- \ PowerAvails Powershell /☆12Updated 6 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- Windows Privesc Check☆20Updated 10 years ago
- My IDA scripts, tips and testing techniques for Thick Client applications.☆17Updated 10 years ago
- ☆15Updated 9 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆43Updated 7 years ago
- Nashorn Post Exploitation☆32Updated 7 years ago
- ☆13Updated 8 years ago
- AV Bypass☆29Updated 7 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- ☆17Updated 7 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 4 years ago
- Fileless SQL Server CLR-based Custom Stored Procedure Command Execution☆35Updated 8 years ago
- Comprehensive Pivoting Framework☆20Updated 8 years ago
- Empire HTTP(S) C2 redirector setup script☆47Updated 6 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Updated 4 years ago
- Ruby based script to perform application scanning of a URL, looking for specific pages to target.☆26Updated 10 years ago