cfreal / exploits
Some of my exploits.
☆574Updated 3 years ago
Alternatives and similar repositories for exploits:
Users that are interested in exploits are comparing it to the libraries listed below
- Linux privilege escalation exploit via snapd (CVE-2019-7304)☆662Updated 5 years ago
- Exploit written in Python for CVE-2018-15473 with threading and export formats☆521Updated 6 months ago
- A collection of curated Java Deserialization Exploits☆589Updated 3 years ago
- Bypassing disabled exec functions in PHP (c) CRLF☆401Updated 4 years ago
- An Attempt to Port BlueKeep PoC from @Ekultek to actual exploits☆345Updated 4 years ago
- HTTP file upload scanner for Burp Proxy☆485Updated last year
- [Linux] Two Privilege Escalation techniques abusing sudo token☆704Updated 5 years ago
- Exploit for Arbitrary File Read on Pulse Secure SSL VPN (CVE-2019-11510)☆361Updated 5 years ago
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!☆601Updated 5 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆574Updated 3 years ago
- ☆260Updated 5 years ago
- Lesser Known Web Attack Lab☆331Updated 4 years ago
- A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques☆717Updated 5 years ago
- Scanner for CVE-2020-0796 - SMBv3 RCE☆668Updated 4 years ago
- Public work for CVE-2019-0708☆290Updated 5 years ago
- Proof of concept for CVE-2019-0708☆1,176Updated 3 years ago
- Bad Characters highlighter for exploit development purposes supporting multiple input formats while comparing.☆208Updated 2 years ago
- From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras☆424Updated 4 years ago
- Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution☆391Updated 7 years ago
- PoC for CVE-2018-15133 (Laravel unserialize vulnerability)☆249Updated 10 months ago
- An exploit for Apache Struts CVE-2018-11776☆301Updated 6 years ago
- The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samp…☆742Updated last year
- Tool for extracting information from newly spawned processes☆745Updated 2 years ago
- SHELLING - a comprehensive OS command injection payload generator☆440Updated 4 years ago
- Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).☆497Updated 2 years ago
- DNS Rebinding Exploitation Framework☆488Updated 3 years ago
- Apache Solr Injection Research☆571Updated 4 years ago
- Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys☆593Updated last year
- Linux post exploitation privilege escalation enumeration☆255Updated 4 years ago
- kadimus is a tool to check and exploit lfi vulnerability.☆521Updated 4 years ago