evilsocket / jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
☆325Updated 5 months ago
Alternatives and similar repositories for jscythe:
Users that are interested in jscythe are comparing it to the libraries listed below
- Take over macOS Electron apps' TCC permissions☆200Updated last year
- Intercept stdin/stdout/stderr for any process☆198Updated 2 years ago
- ☆63Updated 2 years ago
- A crossplatform mDNS enumeration tool.☆347Updated 2 years ago
- Execute ELF files without dropping them on disk☆492Updated 8 months ago
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆241Updated 2 years ago
- Minimal code to connect to a CEF debugger.☆201Updated 4 years ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆291Updated this week
- A curated list of awesome browser security learning material.☆139Updated 2 years ago
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆145Updated 2 years ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated 11 months ago
- ☆201Updated 4 months ago
- Blazing fast, advanced Padding Oracle exploit☆247Updated 9 months ago
- A high performance TCP SYN port scanner.☆315Updated last year
- WebSocket REPL for pentesters☆217Updated 7 months ago
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆183Updated last year
- Repository to store exploits created by Assetnotes Security Research team☆175Updated last year
- A little bit less hackish way to intercept and modify non-HTTP protocols through Burp & others.☆208Updated 2 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 4 years ago
- Electron Research☆70Updated 3 years ago
- PP-finder Help you find gadget for prototype pollution exploitation☆151Updated 6 months ago
- macOS persistence tool☆221Updated 3 years ago
- A fast and secure multi protocol honeypot.☆314Updated 2 years ago
- CQ, a code security scanner☆99Updated 9 months ago
- A tool to find folders excluded from AV real-time scanning using a time oracle☆232Updated last year
- CSTC is a Burp Suite extension that allows request/response modification using a GUI analogous to CyberChef☆230Updated this week
- Shadow Workers is a free and open source C2 and proxy designed for penetration testers to help in the exploitation of XSS and malicious S…☆230Updated last year
- ☆168Updated 2 years ago
- ☆83Updated 8 months ago
- A web client port-scanner written in GO, that supports the WASM/WASI interface for Browser WebAssembly runtime execution.☆143Updated last year