doyensec / oidc-ssrf
An Evil OIDC Server
☆53Updated 2 years ago
Alternatives and similar repositories for oidc-ssrf:
Users that are interested in oidc-ssrf are comparing it to the libraries listed below
- ☆57Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆41Updated last year
- ☆47Updated 10 months ago
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 9 months ago
- ☆17Updated 2 years ago
- C# and Impacket implementation (here with Kerberos auth support) of PrintNightmare CVE-2021-1675/CVE-2021-34527☆29Updated 3 years ago
- Determine privileges from cloud credentials via brute-force testing.☆67Updated 8 months ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegat…☆25Updated this week
- ☆12Updated last month
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- A tool to parse, deduplicate, and query multiple port scans.☆58Updated last year
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 7 months ago
- ☆10Updated 6 years ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 3 years ago
- Jira Secret Hunter - Helps you find credentials and sensitive contents in Jira tickets☆43Updated 2 years ago
- ☆15Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated 2 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- Enumerate AWS permissions and resources.☆68Updated 2 years ago
- ☆23Updated 2 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 3 months ago
- ☆90Updated 3 years ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 3 months ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Updated 5 years ago
- Collection of Semgrep rules for security analysis☆10Updated last year
- During pentesting I often miss screenshots of events for reports due to the quick pace of testing and a lack of foreknowledge about what …☆26Updated 5 years ago
- ☆62Updated this week
- PoC's and Slides from 'Gophers, whales and.. clouds? Oh my!' BSides Wellington presentation by Glenn 'devalias' Grant☆16Updated 7 years ago
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 3 years ago