evilsocket / jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
☆328Updated 8 months ago
Alternatives and similar repositories for jscythe
Users that are interested in jscythe are comparing it to the libraries listed below
Sorting:
- Take over macOS Electron apps' TCC permissions☆202Updated last year
- A crossplatform mDNS enumeration tool.☆352Updated 2 years ago
- Intercept stdin/stdout/stderr for any process☆198Updated 2 years ago
- Blazing fast, advanced Padding Oracle exploit☆254Updated 11 months ago
- A curated list of awesome browser security learning material.☆141Updated 2 years ago
- A web client port-scanner written in GO, that supports the WASM/WASI interface for Browser WebAssembly runtime execution.☆149Updated last year
- ☆63Updated 2 years ago
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆243Updated 2 years ago
- WebSocket REPL for pentesters☆219Updated 9 months ago
- A structure-aware HTTP fuzzing library☆213Updated 5 months ago
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆187Updated last year
- Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z and zip-like (jar, war,…☆101Updated this week
- Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86…☆130Updated 2 years ago
- ☆203Updated 6 months ago
- ☆104Updated 2 years ago
- ☆85Updated 10 months ago
- MD5-Monomorphic Shellcode Packer - all payloads have the same MD5 hash☆789Updated 2 years ago
- CQ, a code security scanner☆100Updated 11 months ago
- Repository to store exploits created by Assetnotes Security Research team☆178Updated last year
- Electron Research☆71Updated 3 years ago
- A fast and secure multi protocol honeypot.☆320Updated 2 years ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆296Updated this week
- d(ockerp)wn - a docker pwn tool manager☆156Updated 3 years ago
- Advanced exploits that I wrote for Pwn2Own competitions and other occasions☆168Updated last year
- Execute ELF files without dropping them on disk☆491Updated 10 months ago
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆145Updated 2 years ago
- Source Code Management Attack Toolkit☆218Updated 2 years ago
- tool for generating wordlists or extending an existing one using mutations.☆385Updated last month
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated last year
- PP-finder Help you find gadget for prototype pollution exploitation☆159Updated 9 months ago