cnotin / RazorVulnerableAppLinks
DO NOT USE: this is a vulnerable ASP.NET web app using Razor templating engine. The vulnerability is a Server-Side Template Injection (SSTI). For training and testing purposes.
☆28Updated 5 years ago
Alternatives and similar repositories for RazorVulnerableApp
Users that are interested in RazorVulnerableApp are comparing it to the libraries listed below
Sorting:
- Practice hacking JWT tokens☆115Updated 3 years ago
- #BugBounty #BugBounty Tools #WebDeveloper Tool☆38Updated 4 months ago
- Compiled dataset of Java deserialization CVEs☆60Updated 5 years ago
- Gopher Tomcat Deployer☆48Updated 6 years ago
- Generating payloads to reverse shell in different contexts of java.☆49Updated 3 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆88Updated 3 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆48Updated 4 years ago
- Authenticated SSRF in Grafana☆82Updated last year
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆128Updated 2 years ago
- Exploits developed by Mikael Kall☆47Updated 2 years ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- Burp Bounty profiles☆83Updated 3 years ago
- Compiles a list of major CDN and WAF subnets.☆66Updated this week
- ☆34Updated 3 years ago
- Public Disclosures☆91Updated 3 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆109Updated 3 years ago
- ☆56Updated 4 years ago
- Same Origin XSS challenge☆62Updated 3 years ago
- CVE-2021-40346 PoC (HAProxy HTTP Smuggling)☆41Updated 4 years ago
- Burp extension to generate multi-step CSRF POC.☆30Updated 5 years ago
- ☆27Updated 4 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Chrome extension that finds DOM based XSS vulnerabilities☆72Updated 3 months ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆29Updated 5 years ago
- Copy as XMLHttpRequest BurpSuite extension☆31Updated 4 years ago
- Wordlist to get files/ folders listed by the app that may expose passwords, sensitive file or folders☆22Updated 5 years ago
- PoC + Docker Environment for Python PIL/Pillow Remote Shell Command Execution via Ghostscript CVE-2018-16509☆59Updated 4 years ago
- A tampered payload generator to Fuzz Web Application Firewalls☆35Updated 5 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆77Updated 5 years ago
- A Burp extension to show the Collaborator client in a tab☆24Updated 2 years ago