doyensec / Unsafe-Unpacking
Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
☆39Updated 3 months ago
Alternatives and similar repositories for Unsafe-Unpacking:
Users that are interested in Unsafe-Unpacking are comparing it to the libraries listed below
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated last year
- ☆26Updated last year
- Simple WebSocket fuzzer☆32Updated last year
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 5 months ago
- some sploits☆17Updated 6 months ago
- PoC for CVE-2025-0282: A remote unauthenticated stack based buffer overflow affecting Ivanti Connect Secure, Ivanti Policy Secure, and Iv…☆36Updated 2 months ago
- ☆76Updated last month
- pocs & exploit for CVE-2023-24871 (rce + lpe)☆48Updated 8 months ago
- a Ruby implementation of Java's ObjectInputStream and ObjectOutputStream.☆16Updated 2 years ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆44Updated last year
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆64Updated last year
- ☆23Updated 2 months ago
- Guided Differential Fuzzing for HTTP Request Parsing Discrepancies☆17Updated 11 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last month
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆21Updated 3 years ago
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆45Updated last year
- ☆32Updated 2 years ago
- Cisco RV110w UPnP stack overflow☆27Updated 3 years ago
- Slides and other material from various conference presentations.☆40Updated this week
- ☆16Updated last year
- ☆13Updated 3 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆84Updated 5 months ago
- php7.4.26-internalog☆13Updated 2 years ago
- ☆15Updated last year
- POC of CVE-2023-35086 only DoS☆45Updated last year
- POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library☆16Updated 6 months ago
- A curated list of argument injection vectors☆40Updated 2 months ago
- Proof-of-Concept of exploits that may be published☆20Updated 5 months ago
- Leveraging CVEs as North Stars in vulnerability discovery and comprehension.☆65Updated last year
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago