A collection of published exploits and proof-of-concept code.
☆20Dec 19, 2017Updated 8 years ago
Alternatives and similar repositories for poc
Users that are interested in poc are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆13May 13, 2018Updated 8 years ago
- POC for XStream RCE☆13Dec 23, 2013Updated 12 years ago
- ☆11Jul 2, 2016Updated 10 years ago
- ☆72Nov 20, 2017Updated 8 years ago
- Local enumeration and exploitation framework.☆18Aug 16, 2017Updated 8 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆22Mar 5, 2022Updated 4 years ago
- Spawns a reverse TCP shell on the machine its run on☆15Mar 29, 2014Updated 12 years ago
- java unserialize vulnerability payload☆21Apr 20, 2019Updated 7 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆21Jan 20, 2025Updated last year
- A dashboard for interesting DOM tricks/techniques.☆35Jun 29, 2026Updated last month
- Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro☆53Aug 5, 2013Updated 13 years ago
- Jira Information Gatherer☆27Dec 3, 2017Updated 8 years ago
- This changes the style of Burp Suite's Repeater tabs to help the testers☆29Jul 3, 2019Updated 7 years ago
- Study about HQL injection exploitation.☆52May 15, 2016Updated 10 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Find unicode codepoints to use in normalisation and transformation attacks.☆11Mar 15, 2021Updated 5 years ago
- 总结了一下2019年在JVM环境中使用XXE攻击的知识☆58Oct 31, 2019Updated 6 years ago
- Burp extension☆58Jun 18, 2018Updated 8 years ago
- Simple utility to add a stream of DNS queries for random domains to obfuscate traffic patterns.☆11Oct 18, 2023Updated 2 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆174Jul 21, 2016Updated 10 years ago
- The Outlook HTML Leak Test Project☆129May 12, 2018Updated 8 years ago
- The official repo of BSIS☆14Feb 16, 2012Updated 14 years ago
- Analyse SQL injection attempts in web server logs☆82Jan 11, 2017Updated 9 years ago
- A list of publicly known but unfixed security bugs☆234Mar 9, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- NTFS file system specimens☆13May 21, 2026Updated 2 months ago
- ☆11Nov 17, 2025Updated 8 months ago
- Linux Bootloader☆15Jun 17, 2020Updated 6 years ago
- Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.☆110Feb 16, 2022Updated 4 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆378Oct 12, 2020Updated 5 years ago
- Run DependencyCheck Against Your Orgs GitHub Repos.☆14Jan 5, 2018Updated 8 years ago
- A node utility to scan a domain with various techniques.☆12Sep 10, 2020Updated 5 years ago
- ☆11Mar 18, 2021Updated 5 years ago
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆191May 17, 2016Updated 10 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- An automation framework for running multiple open sourced subdomain bruteforcing tools (in parallel) using your own wordlists via Docker …☆260Aug 22, 2021Updated 4 years ago
- PowerDNS: Powershell DNS Delivery☆218Sep 26, 2018Updated 7 years ago
- Struts2の脆弱性S2-045, S2-055 および Jackson の脆弱性 CVE-2017-7525, CVE-2017-15095 の調査報告☆106Dec 13, 2017Updated 8 years ago
- A Java serializer in JavaScript☆80May 21, 2018Updated 8 years ago
- ☆13May 9, 2017Updated 9 years ago
- WS-Attacker is a modular framework for web services Security penetration testing.☆12May 16, 2019Updated 7 years ago
- Exploit PoC for Spring RCE issue (CVE-2011-2894)☆44Dec 17, 2023Updated 2 years ago