dxa4481 / whatsinmyredis
A CSRF demonstration of stealing local Redis data, and encrypting all Redis instances on a local network
☆54Updated 7 years ago
Alternatives and similar repositories for whatsinmyredis:
Users that are interested in whatsinmyredis are comparing it to the libraries listed below
- A Scaleable and Asynchronous Framework for Testing Tools built on Kubernetes☆35Updated 7 years ago
- Simple test for the May 2016 OpenSSL padding oracle (CVE-2016-2107)☆186Updated 5 years ago
- Monitor arbitrary TCP traffic using your HTTP interception proxy of choice☆48Updated 7 years ago
- Tagging and annotation framework for scan data☆101Updated 6 years ago
- A command line Hash Identifying tool.☆101Updated 5 years ago
- Go static analysis tool that checks for security issues using an AST.☆28Updated 6 years ago
- ☆74Updated 11 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Proof of Concept code for CVE-2016-5696☆101Updated 8 years ago
- Mass scanning the internet (http and https) using a raw tcpstack.☆59Updated 7 years ago
- A security tool to fingerprint PNG libraries used by web applications☆80Updated 5 years ago
- Self contained cross platform DNS recon tool☆187Updated 7 years ago
- IronBee Rules☆19Updated 11 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆112Updated 4 years ago
- A PoC for exploiting Guzzle's HTTP_PROXY untrusted read☆54Updated 8 years ago
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Use computer vision to determine if an IDN can be interpreted as something it's not☆63Updated 7 years ago
- This is a tool for exploiting Ticketbleed (CVE-2016-9244) vulnerability.☆27Updated 8 years ago
- Proof-of-concept exploit code for CVE-2016-5696☆73Updated 8 years ago
- (DOM-)XSS fuzzer based on phantomjs and go.☆34Updated 10 years ago
- ☆50Updated 7 years ago
- The databases, API's and managers behind https://websecweekly.org☆50Updated 9 years ago
- PoC for getting remote HTTP Server date using gzip compressed HTTP Response☆56Updated 8 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆93Updated 6 years ago
- This is a bundle of python and bash penetration testing tools for recon and information gathering.☆80Updated 9 years ago
- A sub-domain reconnaissance written in golang☆12Updated 7 years ago
- vcsmap is a plugin-based tool to scan public version control systems for sensitive information.☆137Updated 3 years ago
- A tool for discovering subdomains via third party services and wordlists.☆75Updated 8 years ago
- Go library and command line to seek for secrets on various sources.☆242Updated 5 years ago
- Mass scanning and fuzzing library☆49Updated 7 years ago