Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
☆45Dec 16, 2024Updated last year
Alternatives and similar repositories for Unsafe-Unpacking
Users that are interested in Unsafe-Unpacking are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Proof of Concepts for unsafe deserialization in Ruby☆17Oct 17, 2024Updated last year
- clfs CVE 的一些 POC 收集☆16Oct 27, 2022Updated 3 years ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Oct 3, 2023Updated 2 years ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆29Sep 27, 2023Updated 2 years ago
- Collection of Semgrep rules for security analysis☆10Mar 30, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Additional active scan checks for BURP☆28Oct 3, 2024Updated last year
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆53Sep 11, 2024Updated last year
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Sep 20, 2024Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆41Dec 12, 2023Updated 2 years ago
- ☆92Apr 29, 2024Updated 2 years ago
- ☆22Dec 1, 2025Updated 7 months ago
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆28Apr 17, 2018Updated 8 years ago
- Proof of concept agentic solver for nfuncs from DEF CON Quals 2025☆23Apr 18, 2025Updated last year
- Improved version of pintool☆17Jul 24, 2016Updated 10 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- AWS STS token decoder☆47Mar 18, 2025Updated last year
- ☆29Jul 9, 2024Updated 2 years ago
- ☆28Jul 19, 2024Updated 2 years ago
- 反取证程序,类似usbkill☆11Apr 22, 2023Updated 3 years ago
- ☆36Jan 27, 2025Updated last year
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆59Sep 7, 2023Updated 2 years ago
- ☆246Updated this week
- ☆33Jul 4, 2023Updated 3 years ago
- Study notes on Windows NTLM Reflection and token stealing based EOPs.☆20May 5, 2021Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- burp解密插件☆10Jun 9, 2023Updated 3 years ago
- A collection of my Semgrep rules☆54Jul 4, 2023Updated 3 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆114Jun 23, 2025Updated last year
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆44Dec 3, 2025Updated 7 months ago
- msFuzz is a coverage-guided fuzzer for Windows kernel drivers that utilizes Intel PT and leverages constraint and dependency analysis to …☆230Dec 24, 2025Updated 7 months ago
- minimum ELF64 program to calculate its own SHA256.☆18Aug 22, 2022Updated 3 years ago
- A simple Toolkit to BF and decrypt Windows EntraId CacheData☆20Jun 20, 2024Updated 2 years ago
- ☆79Nov 7, 2024Updated last year
- Burp Suite plugin identifies insertion points for GWT (Google Web Toolkit) requests☆13Sep 24, 2015Updated 10 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆51Aug 2, 2025Updated 11 months ago
- A collection of my Semgrep rules to facilitate vulnerability research.☆844Updated this week
- Adds a layer on top of IDA Python to make it easier to write scripts☆29Updated this week
- Experiment with Linux system calls (memfd_create, fexecve, fork...)☆24Apr 12, 2019Updated 7 years ago
- ☆35Feb 10, 2023Updated 3 years ago
- A Burp Suite extension for analyzing Next.js Server Actions - server-side functions identified by hash IDs and `Next-Action` headers.☆57Aug 8, 2025Updated 11 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆25Apr 27, 2026Updated 2 months ago