epinna / tplmap
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
☆3,784Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for tplmap
- Automatic SSRF fuzzer and exploitation tool☆2,986Updated 4 months ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆2,862Updated last year
- Automated All-in-One OS Command Injection Exploitation Tool.☆4,591Updated this week
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,681Updated 3 years ago
- Linux privilege escalation auditing tool☆5,633Updated 8 months ago
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆3,963Updated last year
- Monitor linux processes without root permissions☆4,952Updated last year
- SSRF (Server Side Request Forgery) testing resources☆2,343Updated 3 weeks ago
- HTTP parameter discovery suite.☆5,246Updated this week
- A Tool for Domain Flyovers☆5,639Updated 2 years ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆4,979Updated 2 weeks ago
- File upload vulnerability scanner and exploitation tool.☆3,043Updated last year
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,268Updated last month
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,696Updated 2 years ago
- Automated NoSQL database enumeration and web application exploitation tool.☆2,912Updated 3 months ago
- Web application fuzzer☆5,954Updated 2 months ago
- A python script that finds endpoints in JavaScript files☆3,717Updated 6 months ago
- JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool☆2,419Updated 4 years ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,019Updated last year
- Windows Exploit Suggester - Next Generation☆4,207Updated last week
- A curated list of amazingly awesome Burp Extensions☆2,988Updated 3 weeks ago
- Weaponized web shell☆3,188Updated 3 weeks ago
- PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.☆3,226Updated 3 weeks ago
- linuxprivchecker.py -- a Linux Privilege Escalation Check Script☆1,564Updated 2 years ago
- A swiss army knife for pentesting networks☆8,438Updated 11 months ago
- ✍️ A curated list of CVE PoCs.☆3,320Updated 2 years ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,537Updated 4 years ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,328Updated 6 months ago
- Next-Generation Linux Kernel Exploit Suggester☆1,857Updated last year
- The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.☆3,021Updated 4 years ago