doyensec / Unsafe-UnpackingLinks
Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
☆41Updated 7 months ago
Alternatives and similar repositories for Unsafe-Unpacking
Users that are interested in Unsafe-Unpacking are comparing it to the libraries listed below
Sorting:
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated 2 years ago
- Simple WebSocket fuzzer☆33Updated 2 years ago
- A curated list of argument injection vectors☆41Updated 5 months ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆45Updated last year
- ☆23Updated 5 months ago
- ☆21Updated last month
- ☆26Updated last year
- POC for CVE-2022-23648☆36Updated 3 years ago
- Slides and other material from various conference presentations.☆45Updated last month
- POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library☆17Updated 9 months ago
- TheHulk is a dynamic analysis tool designed to detect and exploit DOM Clobbering vulnerabilities.☆31Updated 2 months ago
- An extension to use Semgrep inside Burp Suite.☆89Updated last month
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 9 months ago
- A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root☆21Updated 2 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆51Updated last year
- ☆19Updated 4 months ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Updated 3 years ago
- ☆33Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 4 months ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- CTF writeups☆30Updated 3 years ago
- ☆31Updated 2 years ago
- A collection of my Semgrep rules☆49Updated 2 years ago
- some sploits☆17Updated 9 months ago
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated last year
- An automated setup for compiling & fuzzing Apache httpd server☆50Updated last year
- 2022 CTF public release☆23Updated 3 years ago
- php7.4.26-internalog☆13Updated 2 years ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆21Updated 4 months ago
- a Ruby implementation of Java's ObjectInputStream and ObjectOutputStream.☆16Updated 3 years ago