defcon-russia / metasploit-payloads
Unified repository for different Metasploit Framework payloads
☆47Updated 5 years ago
Alternatives and similar repositories for metasploit-payloads:
Users that are interested in metasploit-payloads are comparing it to the libraries listed below
- Metasploit Framework☆31Updated 5 years ago
- Ping Exfiltration Command and Control (PiX-C2)☆30Updated 9 years ago
- A tool to analyse JMX API security level.☆43Updated 10 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM☆53Updated 6 years ago
- Python api for usage with cobalt strike's External C2 specification☆61Updated 6 years ago
- Pulse Secure SSL VPN pre-auth file reading☆50Updated 5 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆37Updated 7 years ago
- A fully automatic CVE-2019-0841 bypass targeting all versions of Edge in Windows 10.☆58Updated 5 years ago
- Custom THP Dropper☆27Updated 6 years ago
- Python script to exploit CVE-2015-4852.☆30Updated 8 years ago
- A simple scanner to find and brute force tomcat manager logins☆28Updated 5 years ago
- Cobaltstrike Aggressor Scripts☆28Updated 7 years ago
- sploit☆68Updated 5 years ago
- Slide deck for DefCon Beijing☆39Updated 6 years ago
- Apache Module Backdoor (PoC)☆48Updated 5 years ago
- A proof of concept that demonstrates asynchronous scanning for Java deserialization bugs☆54Updated 7 years ago
- Use powershell to test Office-based persistence methods☆76Updated 3 years ago
- Remote Desktop Protocol in Twisted Python☆26Updated 6 years ago
- New Found 0-days!☆36Updated 5 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 9 years ago
- This is a filter bypass exploit that results in arbitrary file upload and remote code execution in class.upload.php <= 2.0.4☆36Updated 5 years ago
- ☆34Updated 5 years ago
- Use Waitfor.exe to maintain persistence☆54Updated 3 years ago
- A quick and dirty .NET "Deserialize_*" fuzzer based on James Forshaw's (@tiraniddo) DotNetToJScript.☆42Updated 6 years ago
- Use to perform Microsoft exchange account brute-force.☆73Updated 3 years ago
- ☆21Updated 8 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 7 years ago
- Confluence Widget Connector path traversal (CVE-2019-3396)☆22Updated 5 years ago