doyensec / Unsafe-UnpackingLinks
Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide
☆42Updated 9 months ago
Alternatives and similar repositories for Unsafe-Unpacking
Users that are interested in Unsafe-Unpacking are comparing it to the libraries listed below
Sorting:
- Simple WebSocket fuzzer☆32Updated 2 years ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆14Updated 2 years ago
- A curated list of argument injection vectors☆41Updated 8 months ago
- ☆27Updated last year
- ☆33Updated 2 years ago
- ☆22Updated last month
- ☆31Updated 2 years ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆45Updated last year
- A collection of my Semgrep rules☆50Updated 2 years ago
- POC for RCE vulnerability in ParseExcel library, and ParseXLSX too, as a depending library☆17Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 7 months ago
- xortigate-cve-2023-27997☆64Updated last year
- An extension to use Semgrep inside Burp Suite.☆89Updated 4 months ago
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 11 months ago
- ☆21Updated 3 weeks ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆35Updated 3 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆67Updated last year
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Updated 4 years ago
- ☆79Updated 7 months ago
- A PoC exploit for CVE-2022-41622 - a CSRF in F5 BIG-IP control plane that leads to remote root☆21Updated 2 years ago
- POC for CVE-2022-23648☆37Updated 3 years ago
- ☆14Updated 4 months ago
- pocs & exploit for CVE-2023-24871 (rce + lpe)☆48Updated last year
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆105Updated 3 months ago
- a Ruby implementation of Java's ObjectInputStream and ObjectOutputStream.☆16Updated 3 years ago
- php7.4.26-internalog☆13Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Updated last year
- Manager of third-party sources of Semgrep rules 🗂☆88Updated last year
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year